Description Craft CMS before 2.6.2974 allows XSS attacks. Remediation References CVE-2017-8052 Related Vulnerabilities Apache Traffic Server Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2022-37392) PHP Data Processing Errors Vulnerability (CVE-2015-4025) Apache Tomcat Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2024-21733) WordPress Plugin DW Question & Answer Security Bypass (1.2.9) WordPress Plugin Fixedly Media Gallery Cross-Site Scripting (1.3.1) Severity Medium Classification CVE-2017-8052 CWE-707 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities