CVE-2023-40000: Litespeedtech LiteSpeed Cache
Medium severity, CVSS 6.1. EPSS: 54.9% chance of exploitation in the next 30 days.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache allows Stored XSS.This issue affects LiteSpeed Cache: from n/a through 5.7.
Affected products
- Litespeedtech LiteSpeed Cache: before 5.7.0.1 (fixed in 5.7.0.1)
Published 2024-04-16. Last modified 2026-06-17.