CVE-2026-93463: XSS
Published Sep 30, 2026
·Updated
Cross-Site Scripting via Script Validation Bypass exists in baserCMS. If this vulnerability is exploited, an arbitrary script may be executed in the user's web browser may be caused.
Affected Software
1 affected component
baserCMS BaserCMS
Event History
Sep 30, 2026
CVE Published
via MITRE·07:33 AM
Data Sourced
via MITRE·07:33 AM
DescriptionSeverity
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access and user interaction are required for exploitation?
The vector indicates network reachability, low attack complexity, and low privileges required. A victim must interact with attacker-controlled content for the script to execute in their browser.
2
What impact can successful exploitation have?
Successful exploitation can execute arbitrary script in a user’s web browser. The listed impact includes low confidentiality and integrity effects, with no availability impact.