PoC Index

CVE-2023-37153

MEDIUM 6.1EPSS 0.7%

KodExplorer 4.51 contains a Cross-Site Scripting (XSS) vulnerability in the Description box of the Light App creation feature. An attacker can exploit this vulnerability by injecting XSS syntax into the Description field.

CVSS v3.1
6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS
0.73% chance of exploitation in the next 30 days, 52th percentile
Published
2023-07-10
Updated
2024-11-12

Proof-of-concept exploits (1)

References

Related