Essential Guide: CVE-2023-54341 - Webgrind 1.1 - Reflected Cross-Site Scripting (XSS) via file Parameter

Essential Guide: CVE-2023-54341 - Webgrind 1.1 - Reflected Cross-Site Scripting (XSS) via file Parameter

CVE ID : CVE-2023-54341 Published : Jan. 13, 2026, 10:52 p.m. | 32 minutes ago Description : Webgrind 1.1 and before contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts via the file parameter in index.php. The application does not sufficiently encode user-controlled inputs, allowing attackers to execute arbitrary JavaScript in victim's browsers by crafting malicious URLs. Severity: 6.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Jan. 13, 2026
Affected Product: php

Source: Telegram CVE Monitor