CVE-2018-17077: Yiqicms Project Yiqicms

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

An issue was discovered in yiqicms through 2016-11-20. There is stored XSS in comment.php because a length limit can be bypassed.

Affected products

Published 2018-09-16. Last modified 2026-06-17.