CVE-2023-48176: Mizhexiaoxiao Websiteguide

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

An Insecure Permissions issue in WebsiteGuide v.0.2 allows a remote attacker to gain escalated privileges via crafted jwt (JSON web token).

Affected products

Published 2023-11-20. Last modified 2026-06-17.