CVE-2023-53897
EUVD-2023-6019316.12.2025, 17:16
Rukovoditel 3.4.1 contains multiple stored cross-site scripting vulnerabilities that allow authenticated attackers to inject malicious scripts. Attackers can insert XSS payloads in project task comments to execute arbitrary JavaScript in victim browsers.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rukovoditel | rukovoditel | 3.4.1 |
𝑥
= Vulnerable software versions