Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38092 | Leantime is a lean open source project management system. Starting in version 2.3.21, an authenticated user with commenting privileges can inject malicious Javascript into a comment. Once the malicious comment is loaded in the browser by a user, the malicious Javascript code executes. As of time of publication, a patch does not exist. |
Fri, 10 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-10T16:49:49.901Z
Reserved: 2023-05-24T13:46:35.952Z
Link: CVE-2023-33961
Updated: 2024-08-02T15:54:14.193Z
Status : Modified
Published: 2023-05-30T22:15:10.863
Modified: 2024-11-21T08:06:17.990
Link: CVE-2023-33961
No data.
OpenCVE Enrichment
No data.
EUVD