CVE-2020-24223: Mara CMS Project Mara CMS
Medium severity, CVSS 6.1. EPSS: 14.6% chance of exploitation in the next 30 days.
Mara CMS 7.5 allows cross-site scripting (XSS) in contact.php via the theme or pagetheme parameters.
Affected products
- Mara CMS Project Mara CMS: version 7.5 only
Published 2020-08-30. Last modified 2026-06-17.