MEDIUM6.3
GHSA-66jv-qrm3-vvfg
baserCMS has a Cross-site Scripting (XSS) Vulnerability in Blog posts Feature
Quick fix
GHSA-66jv-qrm3-vvfg — baserproject/basercms: upgrade to the fixed version with the command below.
composer require baserproject/basercms:^5.1.2Details
XSS vulnerability in Blog posts feature to baserCMS.
### Target baserCMS 5.1.1 and earlier versions
### Vulnerability Malicious code may be executed in Blog posts feature.
### Countermeasures Update to the latest version of baserCMS
Please refer to the following page to reference for more information. https://basercms.net/security/JVN_00876083
### Credits Ayato Shitomi@Fore-Z
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/baserproject/basercms
Introduced in:
0Fixed in: 5.1.2Fix
composer require baserproject/basercms:^5.1.2