Description
Multiple cross-site scripting (XSS) vulnerabilities in Serendipity before 2.0.5 allow remote authenticated users to inject arbitrary web script or HTML via a category or directory name.
Remediation
References
Related Vulnerabilities
ProjectSend Incorrect Authorization Vulnerability (CVE-2021-40884)
WordPress Plugin Agent Storm by StormRETS Multiple Cross-Site Scripting Vulnerabilities (1.1.35)
WordPress Plugin JH 404 Logger Cross-Site Scripting (1.1)
WordPress Plugin Translate WordPress with GTranslate Cross-Site Scripting (2.8.64)