Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Edhelas

#31878of 53,624
8Total CVSS
Vulnerabilities · 1
PT-2023-21749
8.0
2023-09-14
Movim · Movim · CVE-2023-2848
**Name of the Vulnerable Software and Affected Versions** Movim versions prior to 0.22 **Description** The issue is related to a Cross-Site WebSocket Hijacking vulnerability due to missing header validation. **Recommendations** For versions prior to 0.22, update to version 0.22 or later to resolve the issue. As a temporary workaround, consider implementing additional header validation mechanisms to minimize the risk of exploitation.