Vulnerabilities > Backdropcms > Backdrop > 1.27.0

DATE CVE VULNERABILITY TITLE RISK
2024-07-22 CVE-2024-41709 Cross-site Scripting vulnerability in Backdropcms Backdrop
Backdrop CMS before 1.27.3 and 1.28.x before 1.28.2 does not sufficiently sanitize field labels before they are displayed in certain places.
network
low complexity
backdropcms CWE-79
4.8