CVE-2023-53735
MEDIUMWEBIGniter 28.7.23 - XSS
Title source: llmDescription
WEBIGniter 28.7.23 contains a cross-site scripting vulnerability in the user creation process that allows unauthenticated attackers to execute malicious JavaScript code, enabling potential XSS attacks.
Exploits (1)
References (4)
Scores
CVSS v4
5.3
EPSS
0.0031
EPSS Percentile
54.1%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N
Details
CWE
CWE-79
Status
published
Products (1)
WEBIGniter/WEBIGniter
28.7.23
Published
Dec 04, 2025
Tracked Since
Feb 18, 2026