Description
Craft is a CMS for creating custom digital experiences on the web. A malformed RSS feed can deliver an XSS payload. This issue was patched in version 4.4.6.
Remediation
References
Related Vulnerabilities
WordPress Plugin Memphis Documents Library Cross-Site Request Forgery (3.9.20)
WordPress Plugin Sermon Browser Cross-Site Scripting and SQL Injection Vulnerabilities (0.43)
Oracle Application Server CVE-2006-0288 Vulnerability (CVE-2006-0288)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3553)