Medium severity5.4NVD Advisory· Published Aug 16, 2023· Updated Jun 17, 2026
CVE-2023-38904
CVE-2023-38904
Description
A Cross Site Scripting (XSS) vulnerability in Netlify CMS v.2.10.192 allows a remote attacker to execute arbitrary code via a crafted payload to the body parameter of the new post function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:decapcms:netlify_cms:2.10.192:*:*:*:*:*:*:*
- Netlify/Netlify CMSdescription
- Range: =2.10.192
Patches
Vulnerability mechanics
References
1- www.exploit-db.com/exploits/51576nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.