Haxcms Stored XSS to Mass Token Exfiltration and Cross-Tenant Hijack (CVE-2024-4911)
Security AdvisoryCVE-2024-4911Criticalhaxtheweb
Affected:
- @haxtheweb/haxcms-nodejs <= 25.0.0
- haxcms-php <= 25.0.0
Fixed in:
- @haxtheweb/haxcms-nodejs >= 26.0.0
- haxcms-php >= 26.0.0
Referenced CVEs: CVE-2026-46511
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.