GeniXCMS 1.1.5 has XSS via the from, id, lang, menuid, mod, q, status, term, to, or token parameter. NOTE: this might overlap CVE-2017-14761, CVE-2017-14762, or CVE-2017-14765.
{
"nvd_published_at": "2017-12-05T21:29:00Z",
"severity": "MODERATE",
"github_reviewed_at": "2023-07-27T00:15:21Z",
"cwe_ids": [
"CWE-79"
],
"github_reviewed": true
}