Description
In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user options page can execute arbitrary JavaScript for XSS.
Remediation
References
Related Vulnerabilities
MySQL CVE-2022-39400 Vulnerability (CVE-2022-39400)
WordPress Plugin HTML5 Video Player-Best WordPress Video Player and Block SQL Injection (2.5.26)
Rukovoditel Cleartext Storage of Sensitive Information Vulnerability (CVE-2020-11821)
Oracle Database Server CVE-2011-3511 Vulnerability (CVE-2011-3511)
WordPress Plugin Contact Form Unspecified Vulnerability (1.2)