Skip to main content
Loading…
    CVE-2026-10608 — A security flaw has been discovered in DedeCMS 5.7.88. This affects the function RemoveXSS of the file /plus/carbuyaction.php. The manipulation of the argument postname/des results in sql injection. T — CVE Database · The Intelligence Room