{ "id": "CVE-2023-33287", "sourceIdentifier": "cve@mitre.org", "published": "2023-05-31T20:15:10.583", "lastModified": "2023-06-01T01:17:03.663", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "A stored cross-site scripting (XSS) vulnerability in the Inline Table Editing application before 3.8.0 for Confluence allows attackers to store and execute arbitrary JavaScript via a crafted payload injected into the tables." } ], "metrics": {}, "references": [ { "url": "https://actonic.de/produkte/inline-table-editing/", "source": "cve@mitre.org" }, { "url": "https://marketplace.atlassian.com/apps/1217271/inline-table-editing/version-history", "source": "cve@mitre.org" }, { "url": "https://marketplace.atlassian.com/apps/1217271/inline-table-editing?hosting=server&tab=versions", "source": "cve@mitre.org" } ] }