Vulnerability DatabaseGHSA-mpqj-f4v3-334h

GHSA-mpqj-f4v3-334h
PHP vulnerability analysis and mitigation

Overview

A cross-site scripting (XSS) vulnerability was discovered in the VersionedRequestFilter component of Silverstripe Framework, identified as SS-2016-007. The vulnerability affects versions 3.3.0 to 3.3.2 and 3.4.0, and was fixed in versions 3.3.3 and 3.4.1. The issue was discovered and reported by Matthew Daley, with the fix being released on August 15, 2016 (Silverstripe Advisory).

Technical details

The vulnerability occurs in the VersionedRequestFilter component when a user request cannot access the requested stage. In such cases, an error message is generated for display on the CMS login page. The vulnerability stems from the URL of the requested page being interpolated into the error message without proper escaping, allowing arbitrary HTML injection into the CMS login page. The issue has been assigned a CVSS v3.1 base score of 6.1 (Moderate severity), with the vector string CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N (GitHub Advisory).

Impact

The vulnerability allows attackers to inject arbitrary HTML into the CMS login page through the unescaped URL parameter. This could potentially lead to cross-site scripting attacks, affecting the confidentiality and integrity of the system with low impact (GitHub Advisory).

Exploitability

The vulnerability requires no privileges and has low attack complexity, though user interaction is required. The attack vector is network-based, making it exploitable remotely (GitHub Advisory).

Mitigation and workarounds

The vulnerability has been fixed in Silverstripe Framework versions 3.3.3 and 3.4.1. The fix involves properly encoding the user-supplied URL using Convert::raw2xml before embedding it into the page (Framework Commit).

Additional resources


SourceThis report was generated using AI

Related PHP vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-59989CRITICAL9.2
  • PHP logoPHP
  • phalcon/cphalcon
NoYesAug 21, 2026
CVE-2026-63135HIGH8.2
  • PHP logoPHP
  • yourls/yourls
NoYesAug 21, 2026
GHSA-p2ch-c2c3-4xm5MEDIUM6.1
  • PHP logoPHP
  • winter/wn-backend-module
NoYesAug 20, 2026
GHSA-8hgv-xc77-jmcrMEDIUM5.1
  • PHP logoPHP
  • getgrav/grav
NoYesAug 21, 2026
GHSA-hq84-x37p-j6q5MEDIUM4.5
  • PHP logoPHP
  • winter/wn-backend-module
NoYesAug 20, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management