Update CVE-2023-2591.json

This commit is contained in:
Ben Harvie 2023-05-15 13:06:43 +07:00 committed by GitHub
parent 5ca82cf19c
commit bc3102fa98
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -3,7 +3,7 @@
"ASSIGNER": "security@huntr.dev",
"ID": "CVE-2023-2591",
"STATE": "PUBLIC",
"TITLE": " Code Injection in nilsteampassnet/teampass"
"TITLE": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in nilsteampassnet/teampass"
},
"affects": {
"vendor": {
@ -36,7 +36,7 @@
"description_data": [
{
"lang": "eng",
"value": "Code Injection in GitHub repository nilsteampassnet/teampass prior to 3.0.7."
"value": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitHub repository nilsteampassnet/teampass prior to 3.0.7."
}
]
},
@ -62,7 +62,7 @@
"description": [
{
"lang": "eng",
"value": "CWE-94 Improper Control of Generation of Code"
"value": "CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')"
}
]
}
@ -86,4 +86,4 @@
"advisory": "705f79f4-f5e3-41d7-82a5-f00441cd984b",
"discovery": "EXTERNAL"
}
}
}