Vulnerabilities
CVE-2026-2200 - heyewei JFinalCMS API Endpoint save cross site scripting
CVE ID : CVE-2026-2200 Published : Feb. 9, 2026, 1:02 a.m. | 59 minutes ago Description : A weakness has been identified in heyewei JFinalCMS 5.0.0. This affects an unknown function of the file /admin/admin/save of the component API Endpoint. Executing a manipulation can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
CVE ID
Published
Feb. 9, 2026