Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3538-1 | zabbix security update |
Debian DLA |
DLA-3909-1 | zabbix security update |
EUVD |
EUVD-2023-33023 | Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Nov 2025 07:30:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 14 Feb 2025 02:00:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages. | Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web application, then the application saves the payload (e.g., in a database or server-side text files), and finally, the application unintentionally executes the payload for every victim visiting its web pages. |
Tue, 22 Oct 2024 06:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Zabbix
Published:
Updated: 2025-11-03T21:47:49.270Z
Reserved: 2023-04-06T18:04:44.892Z
Link: CVE-2023-29454
Updated: 2025-11-03T21:47:49.270Z
Status : Modified
Published: 2023-07-13T10:15:09.320
Modified: 2025-11-03T22:16:07.003
Link: CVE-2023-29454
No data.
OpenCVE Enrichment
No data.
Debian DLA
EUVD