CVE-2024-31634

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-31634
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-31634.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-31634
Published
2024-04-16T04:15:08Z
Modified
2025-07-01T16:38:33.748049Z
Summary
[none]
Details

Cross Site Scripting (XSS) vulnerability in Xunruicms versions 4.6.3 and before, allows remote attacker to execute arbitrary code via the Security.php file in the catalog \XunRuiCMS\dayrui\Fcms\Library.

References

Affected packages

Git / github.com/dayrui/xunruicms

Affected ranges

Type
GIT
Repo
https://github.com/dayrui/xunruicms
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

4.*

4.3.13
4.6.3