cleantalk
Vulnerabilities and Security Researches

VK Blocks, CVE-2023-27923

CVE, Research URL

CVE-2023-27923

Application

VK Blocks

Published on
May 23, 2023
Research Description
Cross-site scripting vulnerability in Tag edit function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and earlier allows a remote authenticated attacker to inject an arbitrary script.
Affected versions
max 1.54.0.0.
Status
vulnerable