Description
index.php?p=admin/actions/entries/save-entry in Craft CMS 3.0.25 allows XSS by saving a new title from the console tab.
Remediation
References
Related Vulnerabilities
ownCloud Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-2086)
Oracle Database Server CVE-2008-0349 Vulnerability (CVE-2008-0349)
WordPress Plugin Qiniu Cloudtuchuang Cross-Site Scripting (1.8)
WordPress 5.6.x Multiple Vulnerabilities (5.6 - 5.6.8)
Jboss EAP Improper Authentication Vulnerability (CVE-2012-0874)