CVE-2026-85382 | CVSS: 4.3 | 严重级别: MEDIUM
A vulnerability was detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. Impacted is the function htmlspecialchars_decode of the file App/Home/View/Default/Chapter/oneChapter.tpl of the component Chapter Content Output. Performing a manipulation of the argument content results in cross site scripting. Remote exploitation of the attack is possible. The exploit is now public and may be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The proj
参考链接:
• https://github.com/light0011/cms/
• https://github.com/light0011/cms/issues/8
• https://vuldb.com/cve/CVE-2026-85382
📌 数据来源: NVD 官方