CVE-2023-47309: Nukium Gls

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

Nukium nkmgls before version 3.0.2 is vulnerable to Cross Site Scripting (XSS) via NkmGlsCheckoutModuleFrontController::displayAjaxSavePhoneMobile.

Affected products

  • Nukium Gls: before 3.0.2 (fixed in 3.0.2)

Published 2023-11-15. Last modified 2026-06-17.