Medium severity6.1NVD Advisory· Published Sep 9, 2021· Updated Jun 17, 2026
CVE-2020-19266
CVE-2020-19266
Description
A stored cross-site scripting (XSS) vulnerability in the index.php/Dswjcms/Site/articleList component of Dswjcms 1.6.4 allows attackers to execute arbitrary web scripts or HTML.
Affected products
3- cpe:2.3:a:dswjcms_project:dswjcms:1.6.4:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/tifaweb/Dswjcms/issues/5nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.