baserCMS is a website development framework. Prior to version 5.2.3, baserCMS has an OS command injection vulnerability in the installer. This issue has been patched in version 5.2.3.
References
| Link | Resource |
|---|---|
| https://basercms.net/security/JVN_20837860 | Vendor Advisory |
| https://github.com/baserproject/basercms/releases/tag/5.2.3 | Release Notes |
| https://github.com/baserproject/basercms/security/advisories/GHSA-6hpg-8rx3-cwgv | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-03-31 01:16
Updated : 2026-06-17 10:33
NVD link : CVE-2026-30880
Mitre link : CVE-2026-30880
CVE.ORG link : CVE-2026-30880
JSON object : View
Products Affected
basercms
- basercms
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
