Description Craft CMS 4.2.0.1 suffers from Stored Cross Site Scripting (XSS) in /admin/myaccount. Remediation References CVE-2022-37250 Related Vulnerabilities Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-8235) MySQL CVE-2023-22104 Vulnerability (CVE-2023-22104) EspoCRM Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-7986) WordPress 4.6.x Directory Traversal (4.6 - 4.6.28) Drupal Other Vulnerability (CVE-2005-3973) Severity Medium Classification CVE-2022-37250 CWE-707 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities