A cross-site scripting (XSS) vulnerability in the act...
Moderate severity
Unreviewed
Published
Aug 9, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Aug 9, 2023
Published to the GitHub Advisory Database
Aug 9, 2023
Last updated
Apr 4, 2024
A cross-site scripting (XSS) vulnerability in the act parameter of system_certmanager.php in OPNsense before 23.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
References