5.3
CVSSv3

CVE-2023-26265

Published: 21/02/2023 Updated: 02/03/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Borg theme prior to 1.1.19 for Backdrop CMS does not sufficiently sanitize path arguments that are passed in via a URL. The function borg_preprocess_page in the file template.php does not properly sanitize incoming path arguments before using them.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

borg project borg