AI Score
Confidence
High
EPSS
Percentile
35.9%
Cross-site scripting (XSS) vulnerability in the gallery function in Alkacon OpenCMS 10.5.3 allows remote attackers to inject arbitrary web script or HTML via a malicious SVG image.
github.com/alkacon/opencms-core/issues/587
www.exploit-db.com/exploits/44392/