A vulnerability was found in HAX CMS up to 24.x. It has been declared as problematic. This issue affects some unknown processing. Such manipulation leads to cross site scripting.

This vulnerability is listed as CVE-2026-22704. The attack may be performed from remote. There is no available exploit.

It is recommended to upgrade the affected component.