CVE-2023-23011
Cross Site Scripting (XSS) vulnerability in InvoicePlane 1.6 via filter_product input to file modal_product_lookups.php.
Cross Site Scripting (XSS) vulnerability in InvoicePlane 1.6 via filter_product input to file modal_product_lookups.php.
MEDIUM · CVSS 6.1
EPSS 0.00234
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0