Critical
Low
Medium
CVE-2025-9980
Overview
QuickCMS is vulnerable to multiple Stored XSS in page editor functionality (pages-form). Malicious attacker with admin privileges can inject arbitrary HTML and JS into website, which will be rendered/executed when visiting edited page. By default admin user is not able to add JavaScript into the web...
Critical
Low
Medium
No items found.