Medium severity6.1OSV Advisory· Published Oct 31, 2018· Updated Jun 17, 2026
CVE-2018-18868
CVE-2018-18868
Description
No-CMS 1.1.3 is prone to Persistent XSS via a contact_us name parameter, as demonstrated by the VG48Z5PqVWname parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: v0.6.6-alpha, v1.1.3, v_0.5.0_stable, …
- cpe:2.3:a:no-cms_project:no-cms:1.1.3:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/s-kustm/Subodh/blob/master/CVE-2018-18868.pdfnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.