blob: d7171c588497ea9e806b5c0f7f38dd04b718e941 [file] [log] [blame]
id: GO-2023-1613
modules:
- module: github.com/answerdev/answer
versions:
- fixed: 1.0.6
vulnerable_at: 1.0.5
summary: Answer vulnerable to Cross-site Scripting in github.com/answerdev/answer
cves:
- CVE-2023-1240
ghsas:
- GHSA-55vm-3vq3-4jpc
references:
- advisory: https://github.com/advisories/GHSA-55vm-3vq3-4jpc
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2023-1240
- fix: https://github.com/answerdev/answer/commit/90bfa0dcc7b49482f1d1e31aee3ab073f3c13dd9
- web: https://huntr.dev/bounties/a24f57a4-22e3-4a17-8227-6a410a11498a
source:
id: GHSA-55vm-3vq3-4jpc
created: 2024-08-20T11:35:11.553211-04:00
review_status: UNREVIEWED
unexcluded: NOT_IMPORTABLE