Description Dolphin CMS 7.4.2 is vulnerable to stored XSS via the Page Builder "width" parameter. Remediation References CVE-2021-27969 Related Vulnerabilities WordPress Other Vulnerability (CVE-2007-0106) WordPress Plugin ACF Frontend display Arbitrary File Upload (2.0.5) WordPress Plugin FireStats Arbitrary File Download (1.6.5) WordPress Plugin Welcart e-Commerce PHP Object Injection (1.9.35) e107 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-1057) Severity Medium Classification CVE-2021-27969 CWE-707 CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:A/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N Tags Missing Update Known Vulnerabilities