CVE-2023-46467: Juzaweb CMS

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted payload to the username parameter of the registration page.

Affected products

  • Juzaweb CMS: up to and including 3.4

Published 2023-10-28. Last modified 2026-06-17.