CVE-2017-15273: Mahara

Medium severity, CVSS 5.4. EPSS: 0.8% chance of exploitation in the next 30 days.

Mahara 15.04 before 15.04.15, 16.04 before 16.04.9, 16.10 before 16.10.6, and 17.04 before 17.04.4 are vulnerable to a user submitting a potential dangerous payload, e.g., XSS code, to be saved as titles in internal artefacts.

Affected products

  • Mahara Mahara: version 15.04 only; version 15.04.0 only; version 15.04.1 only; version 15.04.2 only; version 15.04.3 only; version 15.04.4 only; …

Published 2017-10-31. Last modified 2026-06-17.