VDB
Sign up
MEDIUM6.3

GHSA-66jv-qrm3-vvfg

baserCMS has a Cross-site Scripting (XSS) Vulnerability in Blog posts Feature

Quick fix

GHSA-66jv-qrm3-vvfg — baserproject/basercms: upgrade to the fixed version with the command below.

composer require baserproject/basercms:^5.1.2

Details

XSS vulnerability in Blog posts feature to baserCMS.

### Target baserCMS 5.1.1 and earlier versions

### Vulnerability Malicious code may be executed in Blog posts feature.

### Countermeasures Update to the latest version of baserCMS

Please refer to the following page to reference for more information. https://basercms.net/security/JVN_00876083

### Credits Ayato Shitomi@Fore-Z

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/baserproject/basercms
Introduced in: 0Fixed in: 5.1.2
Fixcomposer require baserproject/basercms:^5.1.2

References