CVE-2023-30394: MOVEit

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

The MoveIt framework 1.1.11 for ROS allows cross-site scripting (XSS) via the API authentication function. NOTE: this issue is disputed by the original reporter because it has "no impact."

Affected products

  • MOVEit MOVEit: version 1.1.11 only

Published 2023-05-11. Last modified 2026-06-17.