CVE-2022-35587: Fork-CMS Fork CMS
Medium severity, CVSS 4.8. EPSS: 0.8% chance of exploitation in the next 30 days.
A cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publish_on_date" Parameter
Affected products
- Fork-CMS Fork CMS: version 5.9.3 only
Published 2022-08-12. Last modified 2026-06-17.