Description
ColdFusion is vulnerable to the XSS (cross-site scripting). It does not properly sanitize user input in the path.
Remediation
Upgrade to the latest version of ColdFusion
References
Related Vulnerabilities
WordPress Plugin Additional Variation Images for WooCommerce Cross-Site Scripting (1.1.28)
PHP Use of Password Hash With Insufficient Computational Effort Vulnerability (CVE-2023-0567)
MySQL CVE-2015-4864 Vulnerability (CVE-2015-4864)
Liferay Portal Incorrect Default Permissions Vulnerability (CVE-2024-25605)