Medium severity6.1NVD Advisory· Published May 12, 2023· Updated Jul 9, 2026
CVE-2023-27237
CVE-2023-27237
Description
LavaLite CMS v 9.0.0 was discovered to be vulnerable to a host header injection attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
lavalite/cmsPackagist | <= 9.0.0 | — |
Affected products
3Patches
Vulnerability mechanics
References
7- github.com/M19O/Security-Advisories/tree/main/CVE-2023-27237nvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-94q4-v5g6-qp7xghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-27237ghsaADVISORY
- lavalite.comghsaWEB
- i.ibb.co/34DSW7B/1.pngnvdBroken LinkWEB
- i.ibb.co/kSkqPhQ/3.pngnvdBroken LinkWEB
- i.ibb.co/mJq9CH8/2.pngnvdBroken LinkWEB
News mentions
0No linked articles in our index yet.