VDB
Sign up
MEDIUM5.4

GHSA-jjxq-m8h3-4vw5

baserCMS Cross-site Scripting vulnerability in Content Management

Quick fix

GHSA-jjxq-m8h3-4vw5 — baserproject/basercms: upgrade to the fixed version with the command below.

composer require baserproject/basercms:^5.0.9

Details

There is a XSS Vulnerability in Content Management Feature to baserCMS.

### Target baserCMS 5.0.8 and earlier versions

### Vulnerability Malicious code may be executed in Content Management Feature.

### Countermeasures Update to the latest version of baserCMS

Please refer to the following page to reference for more information. https://basercms.net/security/JVN_73283159

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/baserproject/basercms
Introduced in: 0Fixed in: 5.0.9
Fixcomposer require baserproject/basercms:^5.0.9

References