CVE-2023-45957
22.12.2023, 16:15
A stored cross-site scripting (XSS) vulnerability in the component admin/AdminRequestSqlController.php of thirty bees before 1.5.0 allows attackers to execute arbitrary web script or HTML via $e->getMessage() error mishandling.
Vendor | Product | Version |
---|---|---|
thirtybees | thirty_bees | 𝑥 < 1.5.0 |
𝑥
= Vulnerable software versions
References