CVE-2023-29009: Basercms
Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.
baserCMS is a website development framework with WebAPI that runs on PHP8 and CakePHP4. There is a XSS Vulnerability in Favorites Feature to baserCMS. This issue has been patched in version 4.8.0.
Affected products
- Basercms Basercms: before 4.8.0 (fixed in 4.8.0)
Published 2023-10-27. Last modified 2026-06-17.