CVE-2023-30124

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in packagist/lavalite/cms

Identifiers

CVE-2023-30124, GHSA-h538-r9x6-rcmc

Package Slug

packagist/lavalite/cms

Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Description

LavaLite v9.0.0 is vulnerable to Cross Site Scripting (XSS).

Affected Versions

All versions up to 9.0.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2023-05-19

source