VYPR

Stored-XSS-via-Content-Tag-Names-Microweber-

by Theopaid

CVEs (1)

  • CVE-2026-67617Aug 3, 2026
    risk 0.00cvss epss 0.00

    Microweber CMS through 2.0.20 contains a stored cross-site scripting vulnerability in the content tagging system that allows admin-authenticated attackers to inject arbitrary JavaScript by submitting malicious payloads via the tag_names parameter of the GET…