CVE-2023-29015

CVE-2023-29015

The Goobi viewer is a web application that allows digitised material to be displayed in a web browser. A cross-site scripting vulnerability has been identified in the user comment feature of Goobi viewer core prior to version 23.03. An attacker could create a specially crafted comment, resulting in the execution of malicious script code in the user’s browser when displaying the comment. The vulnerability has been fixed in version 23.03.

Source: CVE-2023-29015

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다