Loading HuntDB...

GHSA-g845-grc9-p9qg

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Stored cross-site scripting vulnerability exists in the App Settings (/admin/app) page, the Markdown Settings (/admin/markdown) page, and the Customize (/admin/customize) page of GROWI versions prior to v6.0.0. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the site using the product.

Related CVEs

Key Information

GHSA ID
GHSA-g845-grc9-p9qg
Published
December 26, 2023 9:30 AM
Last Modified
April 23, 2025 6:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.