Reflected cross-site scripting (XSS) In thorsten/phpmyfaq

Description

thorsten/phpmyfaq vulnerable to cross-site scripting (XSS) via stopword parameter thorsten/phpmyfaq prior to 3.1.12 is vulnerable to cross-site scripting (XSS) because it fails to sanitize user input in the stopword parameter. This has been fixed in 3.1.12.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions