Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-34088: CVE-2023-34088 Stored Cross-Site-Scripting vulnerability in admin interface

Collabora Online is a collaborative online office suite. A stored cross-site scripting (XSS) vulnerability was found in Collabora Online prior to versions 22.05.13, 21.11.9.1, and 6.4.27. An attacker could create a document with an XSS payload as a document name. Later, if an administrator opened the admin console and navigated to the history page, the document name was injected as unescaped HTML and executed as a script inside the context of the admin console. The administrator JSON web token (JWT) used for the websocket connection could be leaked through this flaw. Users should upgrade to Collabora Online 22.05.13 or higher; Collabora Online 21.11.9.1 or higher; Collabora Online 6.4.27 or higher to receive a patch.

CVE
#xss#vulnerability#web#js

Impact

A stored XSS vulnerability was found in Collabora Online. An attacker could create a document with an XSS payload as a document name. Later, if an administrator opens the admin console and navigates to the history page the document name is injected as unescaped HTML and executed as a script inside the context of the admin console. The administrator JWT used for the websocket connection can be leaked through this flaw.

Patches

Users should upgrade to Collabora Online 22.05.13 or higher; Collabora Online 21.11.9.1 or higher; Collabora Online 6.4.27 or higher.

Credits

Thanks to René de Sain (@renniepak) for reporting this flaw.

For more information

If you have any questions or comments about this advisory:

  • Open an issue in CollaboraOnline/online

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907