Headline
GHSA-p7xm-g427-jxfc: Teampass Cross-site Scripting vulnerability
In versions of nilsteampassnet/teampass prior to 3.0.9 some user input was not properly sanitized which may have lead to stored cross-site scripting (XSS) vectors in the application.
Teampass Cross-site Scripting vulnerability
Low severity GitHub Reviewed Published Jun 10, 2023 to the GitHub Advisory Database • Updated Jun 12, 2023
Related news
CVE-2023-3190: HTML Injection in Folder Name in teampass
Improper Encoding or Escaping of Output in GitHub repository nilsteampassnet/teampass prior to 3.0.9.