Loading HuntDB...

GHSA-798f-8mrw-53rg

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Stored cross-site scripting vulnerability exists in the App Settings (/admin/app) page and the Markdown Settings (/admin/markdown) page of GROWI versions prior to v3.5.0. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the site using the product.

Related CVEs

Key Information

GHSA ID
GHSA-798f-8mrw-53rg
Published
December 26, 2023 9:30 AM
Last Modified
January 4, 2024 6:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 13, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.