CVE Published: 23/05/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: jpcert |
Vendor: Vektor,Inc. |
Product: VK Blocks and VK Blocks Pro Status : PUBLISHED
CVE-2023-27923 Description
Cross-site scripting vulnerability in Tag edit function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and earlier allows a remote authenticated attacker to inject an arbitrary script.