Medium severity6.1NVD Advisory· Published Apr 11, 2023· Updated Jun 17, 2026
CVE-2023-23277
CVE-2023-23277
Description
Snippet-box 1.0.0 is vulnerable to Cross Site Scripting (XSS). Remote attackers can render arbitrary web script or HTML from the "Snippet code" form field.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:snippet_box_project:snippet_box:1.0.0:*:*:*:*:*:*:*
- Snippet-box/Snippet-boxdescription
- Range: =1.0.0
Patches
Vulnerability mechanics
References
2- github.com/pawelmalak/snippet-box/issues/57nvdExploitIssue Tracking
- github.com/go-compile/security-advisories/blob/master/CVE-2023-23277.pdfnvdThird Party Advisory
News mentions
0No linked articles in our index yet.