CVE-2023-24181: Openwrt Luci
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
LuCI openwrt-22.03 branch git-22.361.69894-438c598 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /openvpn/pageswitch.htm.
Affected products
- Openwrt Luci: version 22.03.3 only
Published 2023-04-10. Last modified 2026-06-17.