CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. See the original NVD description below for full technical details.
CVE
CVE-2023-52322
Severity
MEDIUM
CVSS
6.1
EPSS
0.44%
Original NVD Description
ecrire/public/assembler.php in SPIP before 4.1.13 and 4.2.x before 4.2.7 allows XSS because input from _request() is not restricted to safe characters such as alphanumerics.
Related CVEs
Other vulnerabilities affecting the same vendor(s)