VYPR

KindEditor Upload Interface

by Semcms

CVEs (1)

  • CVE-2026-96739MedSep 24, 2026
    risk 0.28cvss 4.3epss

    A flaw has been found in SEMCMS up to 4.2. Affected by this issue is some unknown functionality of the file /Edit/php/upload_json.php of the component KindEditor Upload Interface. This manipulation of the argument imgFile causes cross site scripting. The attack may be initiated…