CVE-2026-45014EPSS p20.2%
CVE-2026-45014CVE-2026-45014
Description
ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 are vulnerable to stored cross-site scripting via unsanitized user display name in draft version tooltip. As of time of publication, no known patched versions are available.
Scoring
| EPSS | 0.29% probability of exploitation · percentile 20.2% · 2026-06-19T12:03:05Z |
| Last modified | 2026-06-15 |