VYPR
High severity8.3GHSA Advisory· Published Oct 16, 2024· Updated Apr 15, 2026

CVE-2023-32193

CVE-2023-32193

Description

A vulnerability has been identified in which unauthenticated cross-site scripting (XSS) in Norman's public API endpoint can be exploited. This can lead to an attacker exploiting the vulnerability to trigger JavaScript code and execute commands remotely.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
github.com/rancher/normanGo
< 0.0.0-20240207153100-3bb70b772b520.0.0-20240207153100-3bb70b772b52

Affected products

5

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.