Skip to main content

This site requires you to update your browser. Your browsing experience maybe affected by not having the most up to date version.

CVE-2026-54717 XSS in breadcrumbs in page list view

Severity:
Medium (?)
Identifier:
CVE-2026-54717
Versions Affected:
silverstripe/cms: < 6.2.1
Versions Fixed:
silverstripe/cms: 6.2.1
Release Date:
2026-06-24

Page breadcrumbs in the CMS are vulnerable to XSS when viewed using the page list view

Base CVSS: 5.4
Reported by: Fase Rais Baradika