PiranhaCms is a friendly editor-centric Cms for use with .Net5 for integrating Cms or headless Api. A cross-site scripting vulnerability exists in PiranhaCMS versions 7.0.0 through 9.1.1, which stems from page headers that are not properly cleaned and are vulnerable to stored XSS attacks, and can be exploited by a low-privilege attacker to create A low-authority attacker could use this vulnerability to trigger arbitrary JavaScript execution by creating a page with a specially crafted page title.