Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Michaå Bogdanowicz

Researcher fromNordea Bank ABP
#43357of 53,633
6.1Total CVSS
Vulnerabilities · 1
PT-2024-13363
6.1
2024-02-14
Algosec · Algosec Fireflow · CVE-2023-46596
**Name of the Vulnerable Software and Affected Versions** Algosec FireFlow versions A32.20 through A32.60 **Description** The issue is related to improper input validation in the VisualFlow workflow editor via the `Name`, `Description`, and `Configuration File` fields. This allows an attacker to initiate an XSS attack by injecting malicious executable scripts into the application's code. **Recommendations** For version A32.20, update to b600 or above. For version A32.50, update to b430 or above. For version A32.60, update to b250 or above.