CVE-2023-2850

Published
View on NVD ↗
CVSS v3
4.7
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT

Description

NodeBB is affected by a Cross-Site WebSocket Hijacking vulnerability due to missing validation of the request origin. Exploitation of this vulnerability allows certain user information to be extracted by attacker.

Node.js based forum software built for the modern web
GitHubGitHub
15.1K