Description
htdocs/user/passwordforgotten.php in Dolibarr 10.0.6 allows XSS via the Referer HTTP header.
Remediation
References
Related Vulnerabilities
WordPress Plugin BackWPup Cross-Site Scripting (3.2.3)
OpenSSL Cryptographic Issues Vulnerability (CVE-2015-0205)
WordPress Plugin Product Catalog SQL Injection (3.9.8)
WordPress Plugin Remote Upload Arbitrary File Upload (1.2.1)
Oracle HTTP Server Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-40438)