CVE-2023-32192

A vulnerability has been identified in which unauthenticated cross-site scripting (XSS) in the API Server's public API endpoint can be exploited, allowing an attacker to execute arbitrary JavaScript code in the victim browser
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se ha identificado una vulnerabilidad en la que se pueden explotar cross-site scripting (XSS) no autenticadas en el endpoint de la API pública del servidor API, lo que permite a un atacante ejecutar código JavaScript arbitrario en el navegador de la víctima.

16 Oct 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-16 13:15

Updated : 2026-04-15 00:35


NVD link : CVE-2023-32192

Mitre link : CVE-2023-32192

CVE.ORG link : CVE-2023-32192


JSON object : View

Products Affected

No product.

CWE
CWE-80

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)