Vulnerabilities (CVE)

Filtered by vendor Authcrunch Subscribe
Filtered by product Caddy-security
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-52430 1 Authcrunch 1 Caddy-security 2024-10-16 N/A 6.1 MEDIUM
The caddy-security plugin 1.1.20 for Caddy allows reflected XSS via a GET request to a URL that contains an XSS payload and begins with either a /admin or /settings/mfa/delete/ substring.