Silverstripe CMS is an open source content management system. Prior to 6.2.1, page breadcrumbs in the CMS are vulnerable to cross-site scripting when viewed using the page list view, because page titles are rendered into the breadcrumb trail without being escaped. This issue is fixed in 6.2.1.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-06 22:17
Updated : 2026-09-08 20:51
NVD link : CVE-2026-54717
Mitre link : CVE-2026-54717
CVE.ORG link : CVE-2026-54717
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
