CVE-2018-14877: Weaselcms Project Weaselcms
Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue was discovered in WeaselCMS v0.3.5. XSS exists via Site Language, Site Title, Site Description, and Site Keywords on the SETTINGS page.
Affected products
- Weaselcms Project Weaselcms: version 0.3.5 only
Published 2018-08-03. Last modified 2026-06-17.