CVE-2023-53869: Webigniter
High severity, CVSS 8.7. EPSS: 0.5% chance of exploitation in the next 30 days.
WEBIGniter 28.7.23 contains a file upload vulnerability that allows authenticated attackers to upload and execute dangerous PHP files through the media function. Attackers can leverage any created account to upload malicious PHP scripts that enable remote code execution on the application server.
Affected products
- Webigniter Webigniter: version 28.7.23 only
Published 2025-12-15. Last modified 2026-06-17.