Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

N407Pengyuyan

#42808of 53,633
6.1Total CVSS
Vulnerabilities · 1
PT-2023-11614
6.1
2023-01-26
Hfish · Hfish · CVE-2020-22327
**Name of the Vulnerable Software and Affected Versions** HFish version 0.5.1 **Description** An issue was discovered in HFish where XSS code is triggered when the administrator views information after a payload is inserted in the name entry field. **Recommendations** For HFish version 0.5.1, consider restricting access to the name entry field to prevent malicious payload insertion until a fix is available. As a temporary workaround, avoid viewing user-entered information in the administrator panel to minimize the risk of XSS code execution.