Cross Site Scripting Vulnerability in CMS Made Simple
CVE-2020-23241
4.8MEDIUM
What is CVE-2020-23241?
A Cross Site Scripting (XSS) vulnerability exists in CMS Made Simple 2.2.14, specifically in the 'Extra' module accessed through the 'News > Article' feature. This flaw allows attackers to inject malicious scripts into web pages viewed by other users, potentially compromising the safety and integrity of user interactions within the application.