Medium severity5.4NVD Advisory· Published Oct 4, 2021· Updated Jun 17, 2026
CVE-2021-39486
CVE-2021-39486
Description
A Stored XSS via Malicious File Upload exists in Gila CMS version 2.2.0. An attacker can use this to steal cookies, passwords or to run arbitrary code on a victim's browser.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Gila CMS/Gila CMSdescription
Patches
Vulnerability mechanics
References
1- www.navidkagalwalla.com/gila-cms-vulnerabilitiesnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.