5.5 Medium
AI Score
Confidence
High
0.001 Low
EPSS
Percentile
19.5%
An issue was discovered in GetSimple CMS 3.3.15. An administrator can insert stored XSS via the admin/settings.php Custom Permalink Structure parameter, which injects the XSS payload into any page created at the admin/pages.php URI.
github.com/GetSimpleCMS/GetSimpleCMS/issues/1298