Description
A stored cross-site scripting (XSS) vulnerability in Plone CMS 5.2.3 exists in site-controlpanel via the "form.widgets.site_title" parameter.
Remediation
References
Related Vulnerabilities
MongoDb Improper Input Validation Vulnerability (CVE-2020-7925)
WordPress Plugin Templatic Tevolution Arbitrary File Upload (2.3.6)
PHP NULL Pointer Dereference Vulnerability (CVE-2018-14884)
MODX Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2018-1000207)
WordPress Plugin Blog2Social:Social Media Auto Post & Scheduler SQL Injection (6.3.0)