VYPR
Medium severity6.1NVD Advisory· Published Oct 15, 2018· Updated Jun 17, 2026

CVE-2018-18259

CVE-2018-18259

Description

Stored XSS has been discovered in version 1.0.12 of the LUYA CMS software via /admin/api-cms-nav/create-page.

Affected products

3
  • Range: =1.0.12
  • LUYA/Luya CMS2 versions
    cpe:2.3:a:luya:luya_cms:1.0.12:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:luya:luya_cms:1.0.12:*:*:*:*:*:*:*
    • (no CPE)range: =1.0.12

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.