1 results (0.021 seconds)

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 1

Cross Site Scripting (XSS) vulnerability in yzmcms 6.1 allows attackers to steal user cookies via image clipping function. • http://yzmcms.com https://github.com/linuka-deception/yzmcms6.1.git • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •