{"id":"CVE-2023-47380","details":"Admidio v4.2.12 and below is vulnerable to Cross Site Scripting (XSS).","aliases":["GHSA-vm4p-gh82-xq96"],"modified":"2026-08-12T03:51:32.779445629Z","published":"2023-11-22T00:00:00Z","database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47380.json"},"references":[{"type":"WEB","url":"https://github.com/Admidio/admidio/releases/tag/v4.2.13"},{"type":"WEB","url":"https://www.admidio.org/intern/adm_program/modules/announcements/announcements.php?ann_uuid=714ead2b-1718-4251-a9a3-f1b0df12d60e&headline=Blog"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47380.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-47380"},{"type":"ARTICLE","url":"https://www.getastra.com/blog/security-audit/reflected-xss-vulnerability-in-admidio/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/admidio/admidio","events":[{"introduced":"bb7c87839c8162c8741916b7355775506b5e92c5"},{"fixed":"e4c8159feb440200ff2718ca48b008a53ece7602"}],"database_specific":{"cpe":"cpe:2.3:a:admidio:admidio:4.2.12:*:*:*:*:*:*:*","extracted_events":[{"introduced":"4.2.12"},{"last_affected":"4.2.12"}],"source":["CPE_STRING","REFERENCES"]}}],"versions":["4.2.12","v4.2.12"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-47380.json"}}],"schema_version":"1.9.0"}