CVE-2023-23637
17.01.2023, 21:15
IMPatienT before 1.5.2 allows stored XSS via onmouseover in certain text fields within a PATCH /modify_onto request to the ontology builder. This may allow attackers to steal Protected Health Information.
Vendor | Product | Version |
---|---|---|
unistra | impatient | 𝑥 < 1.5.2 |
𝑥
= Vulnerable software versions
References