Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhf6-49gh-77cw

Опубликовано: 09 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 1.9
CVSS3: 2.4

Описание

A weakness has been identified in heyewei JFinalCMS 5.0.0. This affects an unknown function of the file /admin/admin/save of the component API Endpoint. Executing a manipulation can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

A weakness has been identified in heyewei JFinalCMS 5.0.0. This affects an unknown function of the file /admin/admin/save of the component API Endpoint. Executing a manipulation can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

EPSS

Процентиль: 13%
0.00223
Низкий

1.9 Low

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 2.4
nvd
6 месяцев назад

A weakness has been identified in heyewei JFinalCMS 5.0.0. This affects an unknown function of the file /admin/admin/save of the component API Endpoint. Executing a manipulation can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

EPSS

Процентиль: 13%
0.00223
Низкий

1.9 Low

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79