VYPR
Medium severity6.1NVD Advisory· Published Jun 21, 2024· Updated Jun 17, 2026

CVE-2024-34452

CVE-2024-34452

Description

CMSimple_XH 1.7.6 allows XSS by uploading a crafted SVG document.

Affected products

3
  • Cmsimple Xh/Cmsimple Xhllm-fuzzy2 versions
    =1.7.6+ 1 more
    • (no CPE)range: =1.7.6
    • cpe:2.3:a:cmsimple-xh:cmsimple_xh:1.7.6:-:*:*:*:*:*:*
  • CMSimple_XH/CMSimple_XHdescription

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.