PT-2026-104643 · Yeswiki · Yeswiki
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
YesWiki versions prior to 4.6.7
Description
A cross-site scripting issue exists in the Bazar valeur action. Page editors can inject scripts by rendering unescaped HTML fetched from a remote URL. An attacker can direct the 'tools/bazar/actions/valeur.php' endpoint to a controlled server that returns BAZ fiche titre markup containing an
img onerror handler, which executes the script in the browser of any user viewing the page.Recommendations
Update YesWiki to version 4.6.7 or later.
As a temporary mitigation, restrict access to the 'tools/bazar/actions/valeur.php' endpoint.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Yeswiki