{ "id": "CVE-2023-39712", "sourceIdentifier": "cve@mitre.org", "published": "2023-09-08T18:15:07.647", "lastModified": "2023-09-08T18:15:07.647", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name, Address, and Company parameters under the Add New Put section." } ], "metrics": {}, "references": [ { "url": "https://gist.github.com/Arajawat007/836b586cfb8faeb4edbe57ff1c5dc457#file-cve-2023-39712", "source": "cve@mitre.org" }, { "url": "https://www.sourcecodester.com/", "source": "cve@mitre.org" }, { "url": "https://www.sourcecodester.com/php/16741/free-and-open-source-inventory-management-system-php-source-code.html", "source": "cve@mitre.org" } ] }