CVE-2023-32790: Nxlog Manager

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Cross-Site Scripting (XSS) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to inject a malicious JavaScript payload into the 'Full Name' field during a user edit, due to improper sanitization of the input parameter.

Affected products

  • Nxlog Nxlog Manager: version 5.6.5633 only

Published 2023-10-03. Last modified 2026-06-17.