VYPR
Moderate severityNVD Advisory· Published Jan 4, 2018· Updated Sep 17, 2024

CVE-2018-5216

CVE-2018-5216

Description

Radiant CMS 1.1.4 suffers from stored XSS via crafted Markdown input in the page editor, allowing attackers to execute arbitrary JavaScript.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Radiant CMS 1.1.4 suffers from stored XSS via crafted Markdown input in the page editor, allowing attackers to execute arbitrary JavaScript.

Vulnerability

Radiant CMS version 1.1.4 is vulnerable to stored cross-site scripting (XSS) through the part_body_content parameter on the /admin/pages/*/edit resource. When a user edits a page and submits content with the filter set to "Markdown", the input is not properly sanitized, allowing injection of arbitrary HTML and JavaScript [1][3]. The vulnerable code path is reachable by any authenticated user with page editing privileges.

Exploitation

An attacker must first obtain valid administrator credentials for the Radiant CMS instance (the default demo credentials are admin / radiant) [3]. After logging in, the attacker navigates to the edit page for any page, enters a malicious payload such as `` in the body field, selects "Markdown" as the filter, and saves the changes. The payload is stored and subsequently executed when any user visits the affected page [3].

Impact

Successful exploitation allows an attacker to inject and execute arbitrary JavaScript in the context of the victim’s browser session. This stored XSS can be used to steal session cookies, deface pages, or perform actions on behalf of the authenticated victim, leading to a compromise of confidentiality and integrity [1][3].

Mitigation

No patch or workaround is mentioned in the available references. Administrators should restrict access to the page editor to trusted users and consider disabling the Markdown filter or upgrading to a newer version of Radiant CMS if one exists [1].

AI Insight generated on May 22, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
radiantRubyGems
<= 1.1.4

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.