VDB

GCVE-110-MAGEIA-2023-103

GCVE-110-MAGEIA-2023-103
Advisory Published
Vulnetix · Advisory published March 18, 2023
Remote code execution on feed enrichment. If "Extract full content from HTML5 and Google AMP" has been enabled for one or more feed subscriptions it is possible for a an attacker to inject a script command that runs with user priveleges. (CVE-2023-1350)

Affected Products

VendorProductVersionsPlatforms
Mageialiferea0 (affected), 1.12.10-1.1.mga8 (unaffected), 1.12.10-1.1.mga8 (unaffected), 0 (affected)
Mageiapython-pystray0 (affected), 0.17.3-1.mga8 (unaffected)

Browse GCVE Records

74,267 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›