VYPR
Medium severity4.8NVD Advisory· Published Aug 12, 2021· Updated Jun 17, 2026

CVE-2020-18455

CVE-2020-18455

Description

Cross Site Scripting (XSS) vulnerability exists in bycms v3.0.4 via the title parameter in the edit function in Document.php.

Affected products

3
  • Bycms/bycmsllm-create2 versions
    = 3.0.4+ 1 more
    • (no CPE)range: = 3.0.4
    • (no CPE)
  • cpe:2.3:a:bycms_project:bycms:1.3.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.