๐Ÿ” CVE Alert

CVE-2023-3020

CRITICAL 9.0

Cross-site Scripting (XSS) - Reflected in mkucej/i-librarian-free

CVSS Score
9.0
EPSS Score
0.0%
EPSS Percentile
0th

Cross-site Scripting (XSS) - Reflected in GitHub repository mkucej/i-librarian-free prior to 5.10.4.

CWE CWE-79
Vendor mkucej
Product mkucej/i-librarian-free
Published May 31, 2023
Last Updated Jan 9, 2025
Stay Ahead of the Next One

Get instant alerts for mkucej mkucej/i-librarian-free

Be the first to know when new critical vulnerabilities affecting mkucej mkucej/i-librarian-free are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

Affected Versions

mkucej / mkucej/i-librarian-free
unspecified < 5.10.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
huntr.dev: https://huntr.dev/bounties/92cbe37c-33fa-43bf-8d5b-69aebf51d32c github.com: https://github.com/mkucej/i-librarian-free/commit/3f2c64768a70fc0d529bc29d47bc706ecf26314e