CVE-2019-13236: Alkacon Opencms

Medium severity, CVSS 6.1. EPSS: 3.1% chance of exploitation in the next 30 days.

In system/workplace/ in Alkacon OpenCms 10.5.4 and 10.5.5, there are multiple Reflected and Stored XSS issues in the management interface.

Affected products

  • Alkacon Opencms: version 10.5.4 only; version 10.5.5 only

Published 2019-08-27. Last modified 2026-06-17.