CVE-2023-50473: Billahmed Qbit Matui
Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.
Cross-Site Scripting (XSS) vulnerability in bill-ahmed qbit-matUI version 1.16.4, allows remote attackers to obtain sensitive information via fixed session identifiers (SID) in index.js file.
Affected products
- Billahmed Qbit Matui: version 1.16.4 only
Published 2023-12-21. Last modified 2026-06-17.