release
alert
Auto-detect
Apple App Store
Rust Crate (Cargo)
Chocolatey Package
Docker Image
Debian Package (Bookworm)
Go Module
Ruby GEM
GitHub Repository
GitLab Repository
Maven Central
NPM Package
NuGet Package
Packagist Package
Python Package (PyPI)
VS Code Extension
WordPress Plugin
Search
/
Sign in
CVE-2026-38669
Published
May 4th, 2026
Monday, 4 May 2026, 17:16
View on NVD ↗
CVSS v3
6.1
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT
Description
wCMS v.1.4 is vulnerable to Cross Site Scripting (XSS) when creating a new blog.
Affected Projects
1
References
1
thv930/yumeng_wu
GitHub