Autore: Angelo Barbosa

CVE-2023-48866 | Grocy up to 4.0.3 Recipe Preparation /api/objects/recipes cross site scripting

A vulnerability was found in Grocy up to 4.0.3 and classified as problematic. Affected by this issue is some unknown functionality of the file /api/objects/recipes of the component Recipe Preparation. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2023-48866. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2023-48815 | kkFileView 4.3.0 access control

A vulnerability, which was classified as critical, has been found in kkFileView 4.3.0. This issue affects some unknown processing. The manipulation leads to improper access controls. The identification of this vulnerability is CVE-2023-48815. Access to the local network is required for this attack to succeed. There is no exploit...

Per saperne di più