CVE Database
/

CVE-2023-45740

Back to search

CVE-2023-45740

Published: Dec 26, 2023

Modified: Apr 23, 2025

PUBLISHED

Description

Stored cross-site scripting vulnerability when processing profile images exists in GROWI versions prior to v4.1.3. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the site using the product.

VendorProductVersions

WESEEK, Inc.

GROWI

affected
prior to v4.1.3

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now