CVE-2023-53953

Source
https://cve.org/CVERecord?id=CVE-2023-53953
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53953.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-53953
Published
2025-12-19T21:15:51.590Z
Modified
2026-03-14T15:02:36.022906Z
Severity
  • 5.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

WebsiteBaker 2.13.3 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts when creating web pages. Attackers can craft malicious payloads in page titles that execute arbitrary JavaScript when the page is viewed by other users.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "2.13.3"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53953.json"