Back to all advisories

Tag: xss

1 advisory tagged with "xss".

CVE-2026-41524 High

Stored XSS in BraveCMS Page and Article Content

A stored Cross-Site Scripting (XSS) vulnerability in BraveCMS 2.0 allows attackers to inject malicious JavaScript into page or article content, which is executed in the browser of any user who views the affected page. This can lead to session hijacking, account takeover, or unauthorized actions performed on behalf of victims.

BraveCMS

Start securing your codebase today

Connect your repositories and let AI agents handle continuous scanning, research, and triage.

Have questions? Get in touch →