Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Linnc1

#43217of 53,630
6.1Total CVSS
Vulnerabilities · 1
PT-2021-10598
6.1
2021-01-21
Feehicms · Feehicms · CVE-2020-21146
Name of the Vulnerable Software and Affected Versions: Feehi CMS version 2.0.8 Description: The issue is related to a cross-site scripting (XSS) vulnerability. When the `user name` is inserted as JavaScript code, browsing the post will trigger the XSS. Recommendations: For Feehi CMS version 2.0.8, as a temporary workaround, consider validating and sanitizing the `user name` input to prevent the execution of JavaScript code. At the moment, there is no information about a newer version that contains a fix for this vulnerability.