CVE-2023-48255 — The vulnerability allows an unauthenticated remote attacker to send malicious network requests containing arbitrary client-side script code and obtain its execution inside a victim’s session via a cra — CVE Database · The Intelligence Room