Vulnerability

warn

CVE-2023-43729

Description:
Os Commerce is currently susceptible to a Cross-Site Scripting (XSS) vulnerability. This vulnerability allows attackers to inject JS through the "xsell_type_name[1]" parameter, potentially leading to unauthorized execution of scripts within a user's web browser.
Last updated date:
10/19/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/02/2023
Reference url to background

https://fluidattacks.com/advisories/bts/

This website uses cookies to enhance the user experience. Check out our privacy policy