CVE-2018-12043: Getsymphony Symphony

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

content/content.blueprintspages.php in Symphony 2.7.6 has XSS via the pages content page.

Affected products

Published 2018-06-07. Last modified 2026-06-17.