A cross-site scripting (XSS) vulnerability in PHPFox v4.8.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the status box.Referenceshttps://v4.phpfox.com/https://mohammedshine.github.io/vulnresearch.html