CVE-2023-34830: I-Doit

Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.

i-doit Open v24 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the timeout parameter on the login page.

Affected products

  • I-Doit I-Doit: up to and including 24

Published 2023-06-27. Last modified 2026-06-17.