VDB
Sign up
MEDIUM6.1

GHSA-f8pv-x7h8-687v

Cross-site scripting in feehicms

Details

Insufficient filtering of the tag parameters in feehicms 0.1.3 allows attackers to execute arbitrary web or HTML via a crafted payload.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/feehi/feehicms
Introduced in: 0

No fixed version published yet for feehi/feehicms (composer). Pin to a known-safe version or switch to an alternative.

References