Description
In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user options page can execute arbitrary JavaScript for XSS.
Remediation
References
Related Vulnerabilities
Joomla! Core 1.0.x Multiple Cross-Site Scripting Vulnerabilities (1.0.0 - 1.0.12)
WordPress Plugin WP Maps-Display Google Maps Perfectly with Ease SQL Injection (4.6.1)
WordPress Plugin wp Dreamwork Gallery Arbitrary File Upload (2.3)
Jetty Improper Neutralization of Quoting Syntax Vulnerability (CVE-2023-36479)