CVE-2023-53891

Blackcat CMS 1.4 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts into page content. Attackers can insert JavaScript payloads in the page modification interface that execute when other users view the compromised page.
Configurations

Configuration 1 (hide)

cpe:2.3:a:blackcat-cms:blackcat_cms:1.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-15 21:15

Updated : 2025-12-17 15:35


NVD link : CVE-2023-53891

Mitre link : CVE-2023-53891

CVE.ORG link : CVE-2023-53891


JSON object : View

Products Affected

blackcat-cms

  • blackcat_cms
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')