Sept. 28, 2023, 5:15 a.m. |

National Vulnerability Database web.nvd.nist.gov

OPNsense before 23.7.5 allows XSS via the index.php column_count parameter to the Lobby Dashboard.

cve dashboard opnsense parameter php xss

Cyber Security Network Engineer

@ Nine | North Sydney, Australia

Professional, IAM Security

@ Ingram Micro | Manila Shared Services Center

Principal Windows Threat & Detection Security Researcher (Cortex)

@ Palo Alto Networks | Tel Aviv-Yafo, Israel

Security Engineer - IT Infra Security Architecture

@ Coupang | Seoul, South Korea

Senior Security Engineer

@ LiquidX | Singapore, Central Singapore, Singapore

Application Security Engineer

@ Solidigm | Zapopan, Mexico