MidnightBSD

Advisories for diafan

CVE-2023-37164

Diafan CMS v6.0 was discovered to contain a reflected cross-site scripting via the cat_id parameter at /shop/?module=shop&action=search.

Products Affected

Vendor Product Version
diafan diafan.cms 6.0