A stored cross-site scripting (XSS) vulnerability in the cms/content/edit component of YZNCMS v1.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title parameter.
- https://github.com/yux1azhengye/mycve/blob/main/YZNCMS%201.3.0%20XSS.pdf
- https://github.com/fkie-cad/nvd-json-data-feeds