CVE-2026-104450 | YesWiki up to 4.6.6 pointimage.php pointimage pagetag/title/description cross site scripting

SecurityVulns

A vulnerability identified as problematic has been detected in YesWiki up to 4.6.6. Affected is the function pointimage of the file tools/attach/actions/pointimage.php. The manipulation of the argument pagetag/title/description leads to cross site scripting.

This vulnerability is listed as CVE-2026-104450. The attack may be initiated remotely. There is no available exploit.

You should upgrade the affected component.VulDB Recent EntriesRead More