Security Advisory

CVE-2023-29636

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-01 00:00:00
Last updated 2025-01-30 16:09:33
Assigner mitre
State PUBLISHED

Description

Cross site scripting (XSS) vulnerability in ZHENFENG13 My-Blog, allows attackers to inject arbitrary web script or HTML via the "title" field in the "blog management" page due to the the default configuration not using MyBlogUtils.cleanString.