Medium severity5.4NVD Advisory· Published May 26, 2023· Updated Jun 17, 2026
CVE-2023-33780
CVE-2023-33780
Description
A stored cross-site scripting (XSS) vulnerability in TFDi Design smartCARS 3 v0.7.0 and below allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the body of news article.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- TFDi Design/smartCARSdescription
- Range: <=0.7.0
Patches
Vulnerability mechanics
References
1- github.com/invernyx/smartcars-3-bugs/security/advisories/GHSA-hx8p-f8h7-5h78nvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.