Description
A Cross Site Scripting (XSS) vulnerability exists in Dolibarr before 14.0.3 via the ticket creation flow. Exploitation requires that an admin copies the payload into a box.
Remediation
References
Related Vulnerabilities
WordPress Plugin Arigato Autoresponder and Newsletter Remote Code Execution (2.5.1.9)
WordPress Plugin FileBird-WordPress Media Library Folders & File Manager SQL Injection (4.7.3)
WordPress Plugin Top 10-Popular posts for WordPress Cross-Site Request Forgery (2.9.4)
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Security Bypass (9.0)