CVE-2023-36995: Travianz Project Travianz
Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.
TravianZ through 8.3.4 allows XSS via the Alliance tag/name, the statistics page, the link preferences, the Admin Logs, or the COOKUSR cookie.
Affected products
- Travianz Project Travianz: up to and including 8.3.4
Published 2023-07-06. Last modified 2026-06-17.