CVE-2019-13341: 1234n Minicms

Medium severity, CVSS 4.8. EPSS: 0.6% chance of exploitation in the next 30 days.

In MiniCMS V1.10, stored XSS was found in mc-admin/conf.php (comment box), which can be used to get a user's cookie.

Affected products

  • 1234n Minicms: version 1.10 only

Published 2019-07-05. Last modified 2026-06-17.