microweber/microweber prior to 1.3.3 is vulnerable to stored cross-site scripting (XSS) via the X-Forwarded-For
header. This was fixed in version 1.3.3.
{ "nvd_published_at": "2023-04-05T17:15:00Z", "github_reviewed_at": "2023-04-06T16:54:42Z", "severity": "HIGH", "github_reviewed": true, "cwe_ids": [ "CWE-79" ] }