Description
Zope Products.CMFCore before 2.5.1 and Products.PluggableAuthService before 2.6.2, as used in Plone through 5.2.4 and other products, allow Reflected XSS.
Remediation
References
Related Vulnerabilities
Joomla URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-24598)
WordPress Plugin betterAmazonAPI Cross-Site Scripting (1.2)
Oracle JRE CVE-2023-21938 Vulnerability (CVE-2023-21938)
OpenSSL 7PK - Security Features Vulnerability (CVE-2015-1793)
Oracle Database Server CVE-2006-0271 Vulnerability (CVE-2006-0271)