Headline
GHSA-h5g9-2p35-54c7: nilsteampassnet/teampass vulnerable to cross-site scripting
Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9. This enables an attacker to inject malicious code into a shared folder, which can then be executed by other users who have access to the folder.
nilsteampassnet/teampass vulnerable to cross-site scripting
High severity GitHub Reviewed Published May 31, 2023 to the GitHub Advisory Database • Updated Jun 1, 2023
Related news
CVE-2023-3009
Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.