CVE-2024-54123 | Backdrop CMS up to 1.28.3/1.29.1 SVG Document cross site scripting (core-2024-002 / EUVD-2024-52299)
A vulnerability labeled as problematic has been found in Backdrop CMS up to 1.28.3/1.29.1. This impacts an unknown function of the component SVG Document Handler. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-54123. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.