CVE-2018-12043: Getsymphony Symphony
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
content/content.blueprintspages.php in Symphony 2.7.6 has XSS via the pages content page.
Affected products
- Getsymphony Symphony: version 2.7.6 only
Published 2018-06-07. Last modified 2026-06-17.