CVE-2023-53953: WebsiteBaker 2.13.3 Stored Cross-Site Scripting via Page Creation
WebsiteBaker 2.13.3 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts when creating web pages. Attackers can craft malicious payloads in page titles that execute arbitrary JavaScript when the page is viewed by other users.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-53953?
CVE-2023-53953 is considered a high severity vulnerability due to its potential for stored cross-site scripting attacks.
How do I fix CVE-2023-53953?
To fix CVE-2023-53953, update WebsiteBaker to the latest version that addresses this vulnerability.
Who is affected by CVE-2023-53953?
Authenticated users of WebsiteBaker 2.13.3 are affected by CVE-2023-53953.
What type of vulnerability is CVE-2023-53953?
CVE-2023-53953 is a stored cross-site scripting vulnerability.
What can attackers do with CVE-2023-53953?
Attackers can inject malicious scripts into page titles that execute when other users view the affected web pages.