CMSimple 5.4 is vulnerable to Cross Site Scripting (XSS) via the file upload feature.
- https://github.com/iiSiLvEr/CVEs/tree/main/CVE-2021-43742
- https://github.com/iiSiLvEr/CVEs