Medium severity6.1NVD Advisory· Published Mar 20, 2022· Updated Jun 17, 2026
CVE-2022-26246
CVE-2022-26246
Description
TMS v2.28.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /TMS/admin/setting/mail/createorupdate.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:tms_project:tms:2.28.0:*:*:*:*:*:*:*
- TMS/TMSdescription
- Range: = 2.28.0
Patches
Vulnerability mechanics
References
1- github.com/xiweicheng/tms/issues/15nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.