Medium severity6.1NVD Advisory· Published Feb 21, 2018· Updated Jun 17, 2026
CVE-2018-7274
CVE-2018-7274
Description
Yab Quarx through 2.4.3 is prone to multiple persistent cross-site scripting vulnerabilities: Blog (Title), FAQ (Question), Pages (Title), Widgets (Name), and Menus (Name).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
yab/quarxPackagist | < 2.4.5 | 2.4.5 |
Affected products
2Patches
Vulnerability mechanics
References
7- www.securityfocus.com/bid/103081nvdThird Party AdvisoryVDB EntryWEB
- github.com/YABhq/Quarx/issues/116nvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-h4fh-gpvh-753gghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-7274ghsaADVISORY
- seclists.org/bugtraq/2018/Feb/53ghsaWEB
- github.com/GrafiteInc/CMS/commit/dcc1a5ac3c6d48afd3b8b9d8b11a9c6bfeb75f77ghsaWEB
- github.com/GrafiteInc/CMS/issues/115ghsaWEB
News mentions
0No linked articles in our index yet.