CVE-2025-46349 | yeswiki up to 4.5.3 File Upload Form cross site scripting (GHSA-2f8p-qqx2-gwr2)
A vulnerability has been found in yeswiki up to 4.5.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component File Upload Form. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-46349. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More