u5CMS through v12.8.8 is vulnerable to reflected XSS via the ‘thanks’ parameter in multiple form components
u5CMS through v12.8.8 is vulnerable to reflected XSS via the ‘thanks’ parameter in multiple form components
Why this VPI (explainable, experimental)
VPI breakdown
| Impact | 64.00 |
| Exploitation signal(No additional exploitation signal) | ×1.00 |
| VPI | 64.00 |
VPI formula vpi-v1