Medium severity6.1NVD Advisory· Published Oct 19, 2021· Updated Jun 17, 2026
CVE-2021-33988
CVE-2021-33988
Description
Cross Site Scripting (XSS). vulnerability exists in Microweber CMS 1.2.7 via the Login form, which could let a malicious user execute Javascript by Inserting code in the request form.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
microweber/microweberPackagist | < 1.2.8 | 1.2.8 |
Affected products
3- cpe:2.3:a:microweber:microweber:1.2.7:*:*:*:*:*:*:*
- Microweber/CMSdescription
Patches
Vulnerability mechanics
References
3- github.com/nck0099/osTicket/issues/2nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-w7x8-cq7r-g5g9ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-33988ghsaADVISORY
News mentions
0No linked articles in our index yet.