5.7
/ 10
MEDIUM
CVSS:3.1/AC:H/AV:N/A:N/C:H/I:H/PR:H/S:U/UI:R
Description
Cross Site Scripting vulnerability in Pluck CMS before v.4.7.21dev allows a remote attacker to escalate privileges via the editpage.php and the sanitizePageContent function
Basic Information
ID
CVE-2026-31205
Source
mitre
Published
May 4, 2026 at 00:00
Modified
May 4, 2026 at 14:24
Affected Product
Vendor
n/a
Product
n/a
Version
n/a
Affected Versions
n/a n/a n/a