{"id":"CVE-2023-3565","aliases":["GHSA-524r-w8fx-hqg3"],"url":"https://o3.security/vulnerability/CVE-2023-3565","summary":"Cross-site Scripting (XSS) - Generic in nilsteampassnet/teampass","details":"Cross-site Scripting (XSS) - Generic in GitHub repository nilsteampassnet/teampass prior to 3.0.10.","published":"2023-07-08T13:24:33.695Z","modified":"2026-08-12T03:51:13.333192379Z","cvss":{"score":5.2,"severity":"MEDIUM","vector":"CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"Packagist","name":"nilsteampassnet/teampass","fixedVersion":"3.0.10"}],"fix":{"url":"https://github.com/nilsteampassnet/teampass/commit/820bb49a362a566c9038e4a3048b26d654babb0e","label":"nilsteampassnet/teampass@820bb49"},"references":[{"type":"WEB","url":"https://huntr.dev/bounties/fcf46e1f-2ab6-4057-9d25-cf493ab09530"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/3xxx/CVE-2023-3565.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-3565"},{"type":"FIX","url":"https://github.com/nilsteampassnet/teampass/commit/820bb49a362a566c9038e4a3048b26d654babb0e"},{"type":"PACKAGE","url":"https://github.com/nilsteampassnet/teampass"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:13.333192379Z"}}