CVE-2023-36995: Travianz Project Travianz

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

TravianZ through 8.3.4 allows XSS via the Alliance tag/name, the statistics page, the link preferences, the Admin Logs, or the COOKUSR cookie.

Affected products

Published 2023-07-06. Last modified 2026-06-17.