GHSA-jjp3-m93h-5jm4
GitHub Security Advisory
Cross-site Scripting in microweber
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
Microweber drag and drop website builder and CMS with e-commerce. Cross-site Scripting (XSS) discovered in microweber prior to 1.2.12. There is currently no known workaround, users are recommended to update to version 1.2.12.
Affected Packages
Packagist
microweber/microweber
Affected versions:
0
(fixed in 1.2.12)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: July 4, 2025 6:27 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.