Skip to content

CI4MS: Stored Cross‑Site Scripting (Stored XSS) in Backend User Management Allows Session Hijacking and Full Administrative Account Compromise

Critical severity GitHub Reviewed Published Mar 31, 2026 in ci4-cms-erp/ci4ms • Updated Apr 6, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts