CVE-2023-47379: Microweber

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

Microweber CMS version 2.0.1 is vulnerable to stored Cross Site Scripting (XSS) via the profile picture file upload functionality.

Affected products

Published 2023-11-08. Last modified 2026-06-17.