CVE-2026-104450 | YesWiki up to 4.6.6 pointimage.php pointimage pagetag/title/description cross site scripting
A vulnerability identified as problematic has been detected in YesWiki up to 4.6.6. Affected is the function pointimage of the file tools/attach/actions/pointimage.php. The manipulation of the argument pagetag/title/description leads to cross site scripting.
This vulnerability is listed as CVE-2026-104450. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More