liufee/feehicms

liufee/feehicms

Releases24
Frequency3 weeks 3 days
Last Release
Stars19
FeehiCMS template

CVE History

CVEPublishedCVSS v3CVSS v2
6.1 MEDIUM

FeehiCMS v2.1.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the id parameter at /web/admin/index.php?r=log%2Fview-layer.

5.4 MEDIUM

FeehiCMS v2.1.1 was discovered to contain a cross-site scripting (XSS) vulnerability via a crafted payload injected into the Comment box under the Single Page module.

6.1 MEDIUM4.3 MEDIUM

Insufficient filtering of the tag parameters in feehicms 0.1.3 allows attackers to execute arbitrary web or HTML via a crafted payload.