Description
MODX Revolution through v2.7.0-pl allows XSS via User Settings such as Description.
Remediation
References
Related Vulnerabilities
Oracle Application Server Other Vulnerability (CVE-2006-5366)
OpenVPN AS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-2061)
Moodle URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2022-35652)
Joomla Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2005-4650)