{ "id": "CVE-2023-39714", "sourceIdentifier": "cve@mitre.org", "published": "2023-09-01T18:15:07.710", "lastModified": "2023-09-01T21:15:30.513", "vulnStatus": "Undergoing Analysis", "descriptions": [ { "lang": "en", "value": "Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name, Address, and Company parameters under the Add New Member section." } ], "metrics": {}, "references": [ { "url": "https://gist.github.com/Arajawat007/141e68161014e832e30d39b1979a8a6c#file-cve-2023-39714", "source": "cve@mitre.org" }, { "url": "https://www.sourcecodester.com/", "source": "cve@mitre.org" }, { "url": "https://www.sourcecodester.com/php/16741/free-and-open-source-inventory-management-system-php-source-code.html", "source": "cve@mitre.org" } ] }