An authenticated stored cross-site scripting (XSS) vulnerability in the creation/editing module of Feehi CMS v2.1.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Title parameter.
Metrics
Affected Vendors & Products
References
History
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Authenticated Stored XSS in Feehi CMS 2.1.1 Title Field | |
| First Time appeared |
Feehi
Feehi feehi Cms |
|
| Weaknesses | CWE-79 | |
| Vendors & Products |
Feehi
Feehi feehi Cms |
|
| Metrics |
cvssV3_1
|
Mon, 06 Apr 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated stored cross-site scripting (XSS) vulnerability in the creation/editing module of Feehi CMS v2.1.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Title parameter. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-04-06T00:00:00.000Z
Updated: 2026-04-06T19:57:55.444Z
Reserved: 2026-03-09T00:00:00.000Z
Link: CVE-2026-31351
Updated: 2026-04-06T19:57:40.002Z
Status : Received
Published: 2026-04-06T16:16:32.917
Modified: 2026-04-06T20:16:23.553
Link: CVE-2026-31351
No data.