CVE-2023-37153

Source
https://cve.org/CVERecord?id=CVE-2023-37153
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-37153.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-37153
Published
2023-07-10T16:15:53.610Z
Modified
2025-11-15T06:41:28.406892Z
Severity
  • 6.1 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

KodExplorer 4.51 contains a Cross-Site Scripting (XSS) vulnerability in the Description box of the Light App creation feature. An attacker can exploit this vulnerability by injecting XSS syntax into the Description field.

References

Affected packages

Git / github.com/kalcaddle/kodexplorer

Affected ranges

Type
GIT
Repo
https://github.com/kalcaddle/kodexplorer
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

2.*
2.1
2.61
3.*
3.1
3.12
3.21
3.22
3.23
3.34
3.35
3.36
3.37
3.41
3.43
3.45
3.46
4.*
4.1
4.2
4.21
4.22
4.23
4.24
4.25
4.32
4.34
4.35
4.36
4.38
4.39
4.45
4.46
4.47
4.48.01
4.48.02
4.49
4.49.02
4.50
4.51
v4.*
v4.45

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-37153.json"