CVE-2026-27697 | baserproject basercms up to 5.2.2 Blog Post sql injection (GHSA-vh89-rjph-2g7p)
A vulnerability labeled as critical has been found in baserproject basercms up to 5.2.2. Affected by this issue is some unknown functionality of the component Blog Post Handler. Executing a manipulation can lead to sql injection.
This vulnerability is tracked as CVE-2026-27697. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.