Description
Cross-site scripting (XSS) vulnerability in the URL checking infrastructure in Plone CMS 5.x through 5.0.6, 4.x through 4.3.11, and 3.3.x through 3.3.6 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
Remediation
References
Related Vulnerabilities
Apache HTTP Server Out-of-bounds Read Vulnerability (CVE-2018-1303)
Joomla CVE-2020-35610 Vulnerability (CVE-2020-35610)
PHP Improper Input Validation Vulnerability (CVE-2012-0788)
Moodle Resource Management Errors Vulnerability (CVE-2015-2268)
MediaWiki Improper Authentication Vulnerability (CVE-2011-1766)