baserCMS is a website development framework with WebAPI that runs on PHP8 and CakePHP4. There is a XSS Vulnerability in Favorites Feature to baserCMS. This issue has been patched in version 4.8.0. Referenceshttps://github.com/baserproject/basercms/security/advisories/GHSA-8vqx-prq4-rqrqhttps://basercms.net/security/JVN_45547161https://github.com/baserproject/basercms/releases/tag/basercms-4.8.0