CVE-2023-48049: Cybrosys Website Blog Search

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

A SQL injection vulnerability in Cybrosys Techno Solutions Website Blog Search (aka website_search_blog) v. 13.0 through 13.0.1.0.1 allows a remote attacker to execute arbitrary code and to gain privileges via the name parameter in controllers/main.py component.

Affected products

  • Cybrosys Website Blog Search: from 13.0, up to and including 13.0.1.0.1

Published 2023-12-15. Last modified 2026-06-17.