CVE-2018-16623: Getkirby Kirby

Medium severity, CVSS 4.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Kirby V2.5.12 is prone to a Persistent XSS attack via the Title of the "Site options" in the admin panel dashboard dropdown.

Affected products

Published 2019-05-13. Last modified 2026-06-17.