CVE-2026-32278: CVE-2026-32278: Stored Cross-Site Scripting (XSS) via Unrestricted File Upload in Connect-CMS
CVE-2026-32278: Stored Cross-Site Scripting (XSS) via Unrestricted File Upload in Connect-CMS
Vulnerability ID: CVE-2026-32278
CVSS Score: 8.2
Published: 2026-03-23
Connect-CMS versions up to 1.41.0 and 2.41.0 suffer from a Stored Cross-Site Script...
cvereports.hashnode.dev2 min read