Description
An issue was discovered in ProjectSend before r1053. XSS exists in the "Name" field on the My Account page.
Remediation
References
Related Vulnerabilities
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2021-4104)
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-11127)
WordPress Plugin LearnPress-WordPress LMS Cross-Site Scripting (4.1.6.5)
WordPress Plugin IMDb Profile Widget Local File Inclusion (1.0.8)
WordPress Plugin Secure File Manager Remote Code Execution (2.8.1)