CVE Published: 25/07/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: apache |
Vendor: Apache Software Foundation |
Product: Apache Felix Healthcheck Webconsole Plugin Status : PUBLISHED
CVE-2023-38435 Description
An improper neutralization of input during web page generation (\'Cross-site Scripting\') [CWE-79] vulnerability in Apache Felix Healthcheck Webconsole Plugin version 2.0.2 and prior may allow an attacker to perform a reflected cross-site scripting (XSS) attack.
Upgrade to Apache Felix Healthcheck Webconsole Plugin 2.1.0 or higher.