
A stored DOM XSS vulnerability (CVE-2026-34564) affects the `CI4MS Menu Management (Pages)` component in an `Unknown` product, enabling full account takeover and privilege escalation. #XSS #Security #InfoSec https://www.pulsepatch.io/posts/cve-2026-34564-unknown-ci4ms-xss-account-takeover
Post summary
The post announces a new stored DOM XSS vulnerability (CVE-2026-34564) in an unknown product’s CI4MS Menu Management component, highlighting its potential to enable account takeover and privilege escalation.



