CVE-2023-27237

LavaLite CMS vulnerable to host header injection attack in packagist/lavalite/cms

Identifiers

CVE-2023-27237, GHSA-94q4-v5g6-qp7x

Package Slug

packagist/lavalite/cms

Vulnerability

LavaLite CMS vulnerable to host header injection attack

Description

LavaLite CMS v 9.0.0 was discovered to be vulnerable to a host header injection attack.

Affected Versions

All versions up to 9.0.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2023-05-15

source