EIP-2026-111863
PRE-CVES9Y Serendipity Freetag-plugin 3.21 - 'index.php' Cross-Site Scripting
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111863. PoCs published by Stefan Schurtz.
AI-analyzed exploit summary The exploit demonstrates a cross-site scripting (XSS) vulnerability in the Serendipity Freetag-plugin by injecting malicious JavaScript via the URL parameter. The PoC includes multiple payloads that trigger arbitrary script execution in the context of the affected site.
Description
S9Y Serendipity Freetag-plugin 3.21 - 'index.php' Cross-Site Scripting
Exploits (1)
The exploit demonstrates a cross-site scripting (XSS) vulnerability in the Serendipity Freetag-plugin by injecting malicious JavaScript via the URL parameter. The PoC includes multiple payloads that trigger arbitrary script execution in the context of the affected site.