Mini Cms · Mini Cms · CVE-2021-41663
**Name of the Vulnerable Software and Affected Versions**
Mini CMS version 1.11
**Description**
A cross-site scripting (XSS) issue exists in the article upload functionality, specifically on the post-edit.php page.
**Recommendations**
For Mini CMS version 1.11, update the post-edit.php page to properly sanitize user input and prevent XSS attacks. As a temporary workaround, consider restricting access to the post-edit.php page until a patch is available.