Description
In phpMyFAQ before 2.9.9, there is Stored Cross-site Scripting (XSS) via an HTML attachment.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Symposium Cross-Site Scripting (15.8.1)
WordPress Plugin Widget Shortcode Cross-Site Scripting (0.3.5)
MySQL CVE-2016-0605 Vulnerability (CVE-2016-0605)
WordPress 5.0.x Prototype Pollution (5.0 - 5.0.15)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-1158)