Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-h5g9-2p35-54c7: nilsteampassnet/teampass vulnerable to cross-site scripting

Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9. This enables an attacker to inject malicious code into a shared folder, which can then be executed by other users who have access to the folder.

ghsa
#xss#git

nilsteampassnet/teampass vulnerable to cross-site scripting

High severity GitHub Reviewed Published May 31, 2023 to the GitHub Advisory Database • Updated Jun 1, 2023

Related news

CVE-2023-3009

Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.