CVE-2023-37153

MEDIUM

Kodcloud Kodexplorer - XSS

Title source: rule
STIX 2.1

Description

KodExplorer 4.51 contains a Cross-Site Scripting (XSS) vulnerability in the Description box of the Light App creation feature. An attacker can exploit this vulnerability by injecting XSS syntax into the Description field.

Scores

CVSS v3 6.1
EPSS 0.0015
EPSS Percentile 35.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-79
Status published
Products (1)
kodcloud/kodexplorer 4.51
Published Jul 10, 2023
Tracked Since Feb 18, 2026