Description
Multiple cross-site scripting (XSS) vulnerabilities in Serendipity before 2.0.5 allow remote authenticated users to inject arbitrary web script or HTML via a category or directory name.
Remediation
References
Related Vulnerabilities
WordPress Plugin Yoast SEO Cross-Site Scripting (11.5)
TYPO3 Improper Restriction of XML External Entity Reference Vulnerability (CVE-2020-26229)
Oracle JRE CVE-2013-5829 Vulnerability (CVE-2013-5829)
WordPress Plugin WP Database Backup Unspecified Vulnerability (4.1)
GlassFish Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-3239)