CVE-2026-45014EPSS p36.4%
CVE-2026-45014CVE-2026-45014
Description
ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 are vulnerable to stored cross-site scripting via unsanitized user display name in draft version tooltip. As of time of publication, no known patched versions are available.
Scoring
| EPSS | 0.44% probability of exploitation · percentile 36.4% · 2026-10-05T12:00:23Z |
| Last modified | 2026-06-15 |