Executive brief
baserCMS Update Functionality Vulnerable to OS Command Injection
Affected products
- Packagist baserproject/basercms
Junglewise Threat Intelligence
CVE-2026-30877 · Severity: low · CVSS 3.1 · Published 2026-03-31
Technologies: baserproject/basercms (Packagist). Vendors: Packagist.
baserCMS Update Functionality Vulnerable to OS Command Injection