Medium severity5.4NVD Advisory· Published Jul 17, 2023· Updated Jun 17, 2026
CVE-2023-36656
CVE-2023-36656
Description
Cross Site Scripting (XSS) vulnerability in Jaegertracing Jaeger UI before v.1.31.0 allows a remote attacker to execute arbitrary code via the KeyValuesTable component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:jaegertracing:jaeger_ui:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:jaegertracing:jaeger_ui:*:*:*:*:*:*:*:*range: <1.31.0
- (no CPE)
- (no CPE)range: <v.1.31.0
Patches
Vulnerability mechanics
References
3- github.com/jaegertracing/jaeger-ui/pull/1498nvdPatchVendor Advisory
- github.com/mafintosh/json-markup/pull/15nvdPatchVendor Advisory
- github.com/jaegertracing/jaeger-ui/security/advisories/GHSA-vv24-rm95-q56rnvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.