CVE-2026-93463Medium· 5.4▾ SunlitCross-Site Scripting via Script Validation Bypass exists in baserCMS. If this vulnerability is exploited, an arbitrary script may be executed in the user's web browser may be caused.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.7 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Cross-Site Scripting via Script Validation Bypass exists in baserCMS. If this vulnerability is exploited, an arbitrary script may be executed in the user's web browser may be caused.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-93460Medium· 5.4Stored Cross-site scripting via appended strings in email form fields vulnerability exists in baserCMS
CVE-2026-93464Medium· 5.4Stored Cross-Site Scripting via custom content descriptions vulnerability exists in baserCMS
CVE-2026-93462Medium· 5.3Missing authentication for critical function vulnerability exists in baserCMS
CVE-2021-41164High· 8.2CKEditor4 is an open source WYSIWYG HTML editor
CVE-2021-41184Medium· 6.5jQuery-UI is the official jQuery user interface library
CVE-2021-41183Medium· 6.5jQuery-UI is the official jQuery user interface library