A reflected XSS vulnerability has been found in YzmCMS 7.1. The vulnerability exists in yzmphp/core/class/application.class.php: when logged-in users access a malicious link, their cookies can be captured by an attacker.
{ "versions": [ { "introduced": "0" }, { "last_affected": "7.1" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-35110.json"