Vulnerabilities > Travianz Project > Travianz > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-07-06 CVE-2023-36995 Cross-site Scripting vulnerability in Travianz Project Travianz 8.3.3/8.3.4
TravianZ through 8.3.4 allows XSS via the Alliance tag/name, the statistics page, the link preferences, the Admin Logs, or the COOKUSR cookie.
network
low complexity
travianz-project CWE-79
6.1