VYPR
Medium severity5.4NVD Advisory· Published Nov 28, 2023· Updated Jun 17, 2026

CVE-2023-47437

CVE-2023-47437

Description

A vulnerability has been identified in Pachno 1.0.6 allowing an authenticated attacker to execute a cross-site scripting (XSS) attack. The vulnerability exists due to inadequate input validation in the Project Description and comments, which enables an attacker to inject malicious java script.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Chainlit/pachno2 versions
    cpe:2.3:a:pachno:pachno:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:pachno:pachno:*:*:*:*:*:*:*:*range: <1.0.6
    • (no CPE)range: <1.0.6
  • Pachno/Pachnodescription

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.