CVE-2018-17077: Yiqicms Project Yiqicms
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
An issue was discovered in yiqicms through 2016-11-20. There is stored XSS in comment.php because a length limit can be bypassed.
Affected products
- Yiqicms Project Yiqicms: up to and including 2016-11-20
Published 2018-09-16. Last modified 2026-06-17.