VYPR
Unrated severityOSV Advisory· Published Jan 25, 2026· Updated Apr 7, 2026

Seacms 11.1 - 'checkuser' Stored XSS

CVE-2020-36932

Description

SeaCMS 11.1 contains a stored cross-site scripting vulnerability in the checkuser parameter of the admin settings page. Attackers can inject malicious JavaScript payloads that will execute in users' browsers when the page is loaded.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.