CVE-2026-34558 | ci4-cms-erp ci4ms 0.28.5.0 cross site scripting (GHSA-v77r-xg3p-75g7)
A vulnerability has been found in ci4-cms-erp ci4ms 0.28.5.0 and classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2026-34558. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.