Feehicms · Feehicms · CVE-2022-40408
**Name of the Vulnerable Software and Affected Versions**
FeehiCMS versions 2.0.1.1 and prior
**Description**
The issue is related to a cross-site scripting (XSS) vulnerability. This vulnerability can be exploited via a crafted payload injected into the `Comment` box under the `Single Page` module.
**Recommendations**
For FeehiCMS versions 2.0.1.1 and prior, as a temporary workaround, consider disabling the `Comment` box under the `Single Page` module until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.