CVE-2025-64048 | YCCMS 3.4 Article Management ArticleAction.class.php add/getPost Title cross site scripting
A vulnerability classified as problematic was found in YCCMS 3.4. The affected element is the function add/getPost of the file ArticleAction.class.php of the component Article Management. The manipulation of the argument Title results in cross site scripting.
This vulnerability was named CVE-2025-64048. The attack may be performed from remote. There is no available exploit.