CVE-2023-51246: Get-Simple Getsimplecms
Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.
A Cross Site Scripting (XSS) vulnerability in GetSimple CMS 3.3.16 exists when using Source Code Mode as a backend user to add articles via the /admin/edit.php page.
Affected products
- Get-Simple Getsimplecms: version 3.3.16 only
Published 2024-01-08. Last modified 2026-06-17.