CVE-2023-2848

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/09/2023
Last modified:
20/09/2023

Description

Movim prior to version 0.22 is affected by a Cross-Site WebSocket Hijacking vulnerability. This was the result of a missing header validation.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:movim:movim:*:*:*:*:*:*:*:* 0.22 (excluding)