Description
A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML via a crafted SVG file.
Remediation
References
Related Vulnerabilities
WordPress Plugin Social Media Share Buttons & Social Sharing Icons Security Bypass (1.5.1)
Jenkins CVE-2023-44487 Vulnerability (CVE-2023-44487)
WordPress Plugin Product Catalog Privilege Escalation (3.8.1)
SharePoint CVE-2021-31172 Vulnerability (CVE-2021-31172)
Oracle Database Server CVE-2011-2253 Vulnerability (CVE-2011-2253)