WebsiteBaker 2.13.3 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts when creating web pages. Attackers can craft malicious payloads in page titles that execute arbitrary JavaScript when the page is viewed by other users.
Metrics
Affected Vendors & Products
References
History
Fri, 19 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WebsiteBaker 2.13.3 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts when creating web pages. Attackers can craft malicious payloads in page titles that execute arbitrary JavaScript when the page is viewed by other users. | |
| Title | WebsiteBaker 2.13.3 Stored Cross-Site Scripting via Page Creation | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-19T21:24:53.593Z
Reserved: 2025-12-16T19:22:09.999Z
Link: CVE-2023-53953
Updated: 2025-12-19T21:23:50.756Z
Status : Received
Published: 2025-12-19T21:15:51.590
Modified: 2025-12-19T21:15:51.590
Link: CVE-2023-53953
No data.
OpenCVE Enrichment
No data.