Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-site scripting payloads in versions prior to 0.70.0. The vulnerable parameter is `?categoryCreated=`. Version 0.70.0 fixes the issue.
References
Configurations
No configuration.
History
19 Jan 2026, 19:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-19 19:16
Updated : 2026-01-26 15:05
NVD link : CVE-2026-23841
Mitre link : CVE-2026-23841
CVE.ORG link : CVE-2026-23841
JSON object : View
Products Affected
No product.
