Vulnerability CVE-2023-33196


Published: 2023-05-26

Description:
Craft is a CMS for creating custom digital experiences. Cross site scripting (XSS) can be triggered by review volumes. This issue has been fixed in version 4.4.7.

 References:
https://github.com/craftcms/cms/security/advisories/GHSA-cjmm-x9x9-m2w5
https://github.com/craftcms/cms/releases/tag/4.4.7
https://github.com/craftcms/cms/commit/053d7119697e480ff81c5723bb9a33eaa49e0fc7

Copyright 2026, cxsecurity.com

 

Back to Top