VYPR
Medium severity6.1OSV Advisory· Published Mar 5, 2018· Updated Jun 17, 2026

CVE-2018-7663

CVE-2018-7663

Description

An issue was discovered in resources/views/layouts/app.blade.php in Voten.co before 2017-08-25. An unescaped template literal in the bio field of a user profile (resources/views/layouts/app.blade.php) allows for server-side template injection of arbitrary JavaScript.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Voten Co/Votenllm-fuzzy2 versions
    <2017-08-25+ 1 more
    • (no CPE)range: <2017-08-25
    • (no CPE)
  • cpe:2.3:a:voten:voten:*:*:*:*:*:*:*:*
    Range: <2017-08-25

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.