VDB
Sign up
MEDIUM5.4

GHSA-6vh6-72g6-xqx2

FeehiCMS Cross Site Scripting vulnerability

Details

Cross Site Scripting (XSS) vulnerability in FeehiCMS-2.1.1 allows remote attackers to run arbirtary code via the callback parameter to /cms/notify.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/feehi/feehicms
Introduced in: 0

No fixed version published yet for feehi/feehicms (composer). Pin to a known-safe version or switch to an alternative.

References