Description
Craft is a CMS for creating custom digital experiences. Cross site scripting (XSS) can be triggered by review volumes. This issue has been fixed in version 4.4.7.
Remediation
References
Related Vulnerabilities
WordPress Plugin Google Shortlink by BestWebSoft Cross-Site Scripting (1.5.2)
WordPress 4.0.x Multiple Vulnerabilities (4.0 - 4.0.9)
WordPress Plugin Post Grid, List for WordPress-Content Views Cross-Site Scripting (1.6.1)
WordPress Plugin Venture Event Manager Cross-Site Scripting (3.2.4)
WordPress Plugin WP Maintenance Mode Cross-Site Request Forgery (1.8.7)