CVE-2024-27300

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-27300
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-27300.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-27300
Aliases
Published
2024-03-25T19:15:57Z
Modified
2024-10-08T04:06:13.727249Z
Summary
[none]
Details

phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. The email field in phpMyFAQ's user control panel page is vulnerable to stored XSS attacks due to the inadequacy of PHP's FILTER_VALIDATE_EMAIL function, which only validates the email format, not its content. This vulnerability enables an attacker to execute arbitrary client-side JavaScript within the context of another user's phpMyFAQ session. This vulnerability is fixed in 3.2.6.

References

Affected packages

Git / github.com/thorsten/phpmyfaq

Affected ranges

Type
GIT
Repo
https://github.com/thorsten/phpmyfaq
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Fixed

Affected versions

2.*

2.10.0-alpha
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.0
2.6.0-RC
2.6.0-alpha
2.6.0-beta
2.6.1
2.6.10
2.6.11
2.6.12
2.6.13
2.6.14
2.6.15
2.6.16
2.6.17
2.6.2
2.6.3
2.6.4
2.6.5
2.6.6
2.6.7
2.6.8
2.6.9
2.7.0
2.7.0-RC
2.7.0-alpha
2.7.0-alpha2
2.7.0-beta
2.7.0-beta2
2.7.0-beta3
2.7.1
2.7.2
2.7.3
2.7.4
2.7.5
2.7.6
2.7.7
2.7.8
2.7.9
2.8.0
2.8.0-RC
2.8.0-RC2
2.8.0-RC3
2.8.0-RC4
2.8.0-alpha
2.8.0-alpha2
2.8.0-alpha3
2.8.0-beta
2.8.0-beta2
2.8.0-beta3
2.8.1
2.8.10
2.8.11
2.8.12
2.8.13
2.8.14
2.8.15
2.8.16
2.8.17
2.8.18
2.8.19
2.8.2
2.8.20
2.8.21
2.8.22
2.8.23
2.8.24
2.8.25
2.8.26
2.8.27
2.8.28
2.8.29
2.8.3
2.8.4
2.8.5
2.8.6
2.8.7
2.8.8
2.8.9
2.9.0
2.9.0-RC
2.9.0-RC2
2.9.0-RC3
2.9.0-RC4
2.9.0-alpha
2.9.0-alpha2
2.9.0-alpha3
2.9.0-alpha4
2.9.0-beta
2.9.0-beta2
2.9.1
2.9.2
2.9.3
2.9.4
2.9.5
2.9.6
2.9.7
2.9.8
2.9.9

3.*

3.0.0
3.0.0-RC
3.0.0-RC.2
3.0.0-alpha
3.0.0-alpha.2
3.0.0-alpha.3
3.0.0-alpha.4
3.0.0-beta
3.0.0-beta.2
3.0.0-beta.3
3.0.1
3.0.10
3.0.11
3.0.12
3.0.2
3.0.3
3.0.4
3.0.5
3.0.6
3.0.7
3.0.8
3.0.9
3.1.0
3.1.0-RC
3.1.0-alpha
3.1.0-alpha.2
3.1.0-alpha.3
3.1.0-beta
3.1.1
3.1.10
3.1.11
3.1.12
3.1.13
3.1.14
3.1.15
3.1.16
3.1.17
3.1.2
3.1.3
3.1.4
3.1.5
3.1.6
3.1.7
3.1.8
3.1.9
3.2.0
3.2.0-RC
3.2.0-RC.2
3.2.0-RC.4
3.2.0-alpha
3.2.0-beta
3.2.0-beta.2
3.2.1
3.2.2
3.2.3
3.2.4
3.2.5

4.*

4.0.0-alpha

Other

development-nightly-2023-07-02
development-nightly-2023-07-03
development-nightly-2023-07-04
development-nightly-2023-07-05
development-nightly-2023-07-06
development-nightly-2023-07-07
development-nightly-2023-07-08
development-nightly-2023-07-09
development-nightly-2023-07-10
development-nightly-2023-07-11
development-nightly-2023-07-12
development-nightly-2023-07-13
development-nightly-2023-07-14
development-nightly-2023-07-15
development-nightly-2023-07-16
development-nightly-2023-07-17
development-nightly-2023-07-18
development-nightly-2023-07-19
development-nightly-2023-07-20
development-nightly-2023-07-21
development-nightly-2023-07-22
development-nightly-2023-07-23
development-nightly-2023-07-24
development-nightly-2023-07-25
development-nightly-2023-07-26
development-nightly-2023-07-27
development-nightly-2023-07-28
development-nightly-2023-07-29
development-nightly-2023-07-30
development-nightly-2023-07-31
development-nightly-2023-08-01
development-nightly-2023-08-02
development-nightly-2023-08-03
development-nightly-2023-08-04
development-nightly-2023-08-05
development-nightly-2023-08-06
development-nightly-2023-08-07
development-nightly-2023-08-08
development-nightly-2023-08-09
development-nightly-2023-08-10
development-nightly-2023-08-11
development-nightly-2023-08-12
development-nightly-2023-08-13
development-nightly-2023-08-14
development-nightly-2023-08-15
development-nightly-2023-08-16
development-nightly-2023-08-17
development-nightly-2023-08-18
development-nightly-2023-08-19
development-nightly-2023-08-20
development-nightly-2023-08-21
development-nightly-2023-08-22
development-nightly-2023-08-23
development-nightly-2023-08-24
development-nightly-2023-08-25
development-nightly-2023-08-26
development-nightly-2023-08-27
development-nightly-2023-08-28
development-nightly-2023-08-29
development-nightly-2023-08-30
development-nightly-2023-08-31
development-nightly-2023-09-01
development-nightly-2023-09-02
development-nightly-2023-09-03
development-nightly-2023-09-04
development-nightly-2023-09-05
development-nightly-2023-09-06
development-nightly-2023-09-07
development-nightly-2023-09-08
development-nightly-2023-09-09
development-nightly-2023-09-10
development-nightly-2023-09-11
development-nightly-2023-09-12
development-nightly-2023-09-13
development-nightly-2023-09-14
development-nightly-2023-09-15
development-nightly-2023-09-16
development-nightly-2023-09-17
development-nightly-2023-09-18
development-nightly-2023-09-19
development-nightly-2023-09-20
development-nightly-2023-09-21
development-nightly-2023-09-22
development-nightly-2023-09-23
development-nightly-2023-09-24
development-nightly-2023-09-25
development-nightly-2023-09-26
development-nightly-2023-09-27
development-nightly-2023-09-28
development-nightly-2023-09-29
development-nightly-2023-09-30
development-nightly-2023-10-01
development-nightly-2023-10-02
development-nightly-2023-10-03
development-nightly-2023-10-04
development-nightly-2023-10-05
development-nightly-2023-10-06
development-nightly-2023-10-07
development-nightly-2023-10-08
development-nightly-2023-10-09
development-nightly-2023-10-10
development-nightly-2023-10-11
development-nightly-2023-10-12
development-nightly-2023-10-13
development-nightly-2023-10-14
development-nightly-2023-10-15
development-nightly-2023-10-16
development-nightly-2023-10-17
development-nightly-2023-10-18
development-nightly-2023-10-19
development-nightly-2023-10-20
development-nightly-2023-10-21
development-nightly-2023-10-22
development-nightly-2023-10-23
development-nightly-2023-10-24
development-nightly-2023-10-25
development-nightly-2023-10-26
development-nightly-2023-10-27
development-nightly-2023-10-28
development-nightly-2023-10-29
development-nightly-2023-10-30
development-nightly-2023-10-31
development-nightly-2023-11-01
development-nightly-2023-11-02
development-nightly-2023-11-03
development-nightly-2023-11-04
development-nightly-2023-11-05
development-nightly-2023-11-06
development-nightly-2023-11-07
development-nightly-2023-11-08
development-nightly-2023-11-09
development-nightly-2023-11-10
development-nightly-2023-11-11
development-nightly-2023-11-12
development-nightly-2023-11-13
development-nightly-2023-11-14
development-nightly-2023-11-15
development-nightly-2023-11-16
development-nightly-2023-11-17
development-nightly-2023-11-18
development-nightly-2023-11-19
development-nightly-2023-11-20
development-nightly-2023-11-21
development-nightly-2023-11-22
development-nightly-2023-11-23
development-nightly-2023-11-24
development-nightly-2023-11-25
development-nightly-2023-11-26
development-nightly-2023-11-27
development-nightly-2023-11-28
development-nightly-2023-11-29
development-nightly-2023-11-30
development-nightly-2023-12-01
development-nightly-2023-12-02
development-nightly-2023-12-03
development-nightly-2023-12-04
development-nightly-2023-12-05
development-nightly-2023-12-06
development-nightly-2023-12-07
development-nightly-2023-12-08
development-nightly-2023-12-09
development-nightly-2023-12-10
development-nightly-2023-12-11
development-nightly-2023-12-12
development-nightly-2023-12-13
development-nightly-2023-12-14
development-nightly-2023-12-15
development-nightly-2023-12-16
development-nightly-2023-12-17
development-nightly-2023-12-18
development-nightly-2023-12-19
development-nightly-2023-12-20
development-nightly-2023-12-21
development-nightly-2023-12-22
development-nightly-2023-12-23
development-nightly-2023-12-24
development-nightly-2023-12-25
development-nightly-2023-12-26
development-nightly-2023-12-27
development-nightly-2023-12-28
development-nightly-2023-12-29
development-nightly-2023-12-30
development-nightly-2023-12-31
development-nightly-2024-01-01
development-nightly-2024-01-02
development-nightly-2024-01-03
development-nightly-2024-01-04
development-nightly-2024-01-05
development-nightly-2024-01-06
development-nightly-2024-01-07
development-nightly-2024-01-08
development-nightly-2024-01-09
development-nightly-2024-01-10
development-nightly-2024-01-11
development-nightly-2024-01-12
development-nightly-2024-01-13
development-nightly-2024-01-14
development-nightly-2024-01-15
development-nightly-2024-01-16
development-nightly-2024-01-17
development-nightly-2024-01-18
development-nightly-2024-01-19
development-nightly-2024-01-20
development-nightly-2024-01-21
development-nightly-2024-01-22
development-nightly-2024-01-23
development-nightly-2024-01-24
development-nightly-2024-01-25
development-nightly-2024-01-26
development-nightly-2024-01-27
development-nightly-2024-01-28
development-nightly-2024-01-29
development-nightly-2024-01-30
development-nightly-2024-01-31
development-nightly-2024-02-01
development-nightly-2024-02-02
development-nightly-2024-02-03
development-nightly-2024-02-04
development-nightly-2024-02-05
development-nightly-2024-02-06
development-nightly-2024-02-07
development-nightly-2024-02-08
development-nightly-2024-02-09
development-nightly-2024-02-10
development-nightly-2024-02-11
development-nightly-2024-02-12
development-nightly-2024-02-13
development-nightly-2024-02-14
development-nightly-2024-02-15
development-nightly-2024-02-16
development-nightly-2024-02-17
development-nightly-2024-02-18
development-nightly-2024-02-19
development-nightly-2024-02-20
development-nightly-2024-02-21
development-nightly-2024-02-22
development-nightly-2024-02-23
development-nightly-2024-02-24
development-nightly-2024-02-25
development-nightly-2024-02-26
development-nightly-2024-02-27
development-nightly-2024-02-28
development-nightly-2024-02-29
development-nightly-2024-03-01
development-nightly-2024-03-02