Security Advisory

CVE-2023-31506

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-09 00:00:00
Last updated 2025-06-16 18:28:05
Assigner mitre
State PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in Grav versions 1.7.44 and before, allows remote authenticated attackers to execute arbitrary web scripts or HTML via the onmouseover attribute of an ISINDEX element.