Description Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6. Remediation References CVE-2023-1316 Related Vulnerabilities Jboss EAP Deserialization of Untrusted Data Vulnerability (CVE-2019-17267) WordPress Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-7233) WordPress 4.4.x Possible SQL Injection Vulnerability (4.4 - 4.4.11) WordPress Plugin WP Statistics SQL Injection (12.0.7) WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2017-14726) Severity Medium Classification CVE-2023-1316 CWE-707 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:L/SI:L/SA:N Tags Missing Update Known Vulnerabilities