Description
Cross-site scripting (XSS) vulnerability in ecrire/tools.php in DotClear 1.2.6 allows remote attackers to inject arbitrary web script or HTML via unspecified form fields on the blogroll page.
Remediation
References
Related Vulnerabilities
MySQL CVE-2021-2070 Vulnerability (CVE-2021-2070)
WordPress Plugin WPCS-WordPress Currency Switcher Cross-Site Request Forgery (1.1.6)
Drupal Core 8.6.x Multiple Vulnerabilities (8.6.0 - 8.6.14)
WordPress Plugin Happy Addons for Elementor Pro Cross-Site Scripting (1.16.0)
WordPress Plugin Contact Form by BestWebSoft Cross-Site Scripting (3.81)