CVE-2023-30968
Severity CVSS v4.0:
Pending analysis
Type:
CWE-434
Unrestricted Upload of File with Dangerous Type
Publication date:
12/03/2024
Last modified:
13/03/2024
Description
One of Gotham Gaia services was found to be vulnerable to a stored cross-site scripting (XSS) vulnerability that could have allowed an attacker to bypass CSP and get a persistent cross site scripting payload on the stack.<br />
Impact
Base Score 3.x
6.80
Severity 3.x
MEDIUM