FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

phpmyfaq -- multiple vulnerabilities

Affected packages
phpmyfaq-php80 < 3.2.2
phpmyfaq-php81 < 3.2.2
phpmyfaq-php82 < 3.2.2
phpmyfaq-php83 < 3.2.2

Details

VuXML ID 4f370c80-79ce-11ee-be8e-589cfc0f81b0
Discovery 2023-10-31
Entry 2023-11-02

phpmyfaq developers report:

XSS

Insufficient session expiration

References

CVE Name CVE-2023-5863
CVE Name CVE-2023-5865
URL https://huntr.com/bounties/4c4b7395-d9fd-4ca0-98d7-2e20c1249aff/
URL https://huntr.com/bounties/fbfd4e84-61fb-4063-8f11-15877b8c1f6f/
URL https://nvd.nist.gov/vuln/detail/CVE-2023-5863
URL https://nvd.nist.gov/vuln/detail/CVE-2023-5865