CVE-2020-27533: Dedecms

Medium severity, CVSS 5.4. EPSS: 3.6% chance of exploitation in the next 30 days.

A Cross Site Scripting (XSS) issue was discovered in the search feature of DedeCMS v.5.8 that allows malicious users to inject code into web pages, and other users will be affected when viewing web pages.

Affected products

Published 2020-10-22. Last modified 2026-06-17.