CVE-2020-24223: Mara CMS Project Mara CMS

Medium severity, CVSS 6.1. EPSS: 14.6% chance of exploitation in the next 30 days.

Mara CMS 7.5 allows cross-site scripting (XSS) in contact.php via the theme or pagetheme parameters.

Affected products

Published 2020-08-30. Last modified 2026-06-17.