Understanding the Recent XSS Vulnerability in CI4MS In recent news, a critical vulnerability identified as CVE-2026-45138 threatens CI4MS, a popular CodeIgniter 4-based content management system. This vulnerability involves stored cross-site scripting (XSS) due to a flaw in the `html_purify` validation rule. Let’s delve into what this means for system administrators, hosting providers, and web server […]













