Description
A Cross Site Scripting (XSS) vulnerability exists in Nacos 2.0.3 in auth/users via the (1) pageSize and (2) pageNo parameters.
Remediation
References
https://github.com/alibaba/nacos/issues/7359
Related Vulnerabilities
CVE-2023-29522 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2022-26049 Vulnerability in maven package com.diffplug.gradle:goomph
CVE-2023-37263 Vulnerability in npm package @strapi/plugin-content-manager
CVE-2023-47323 Vulnerability in maven package org.silverpeas.core:silverpeas-core-api
CVE-2023-26055 Vulnerability in maven package org.xwiki.commons:xwiki-commons-xml