Description
Craft CMS before 3.3.8 has stored XSS via a name field. This field is mishandled during site deletion.
Remediation
References
Related Vulnerabilities
Joomla Insufficient Verification of Data Authenticity Vulnerability (CVE-2020-15699)
MySQL Divide By Zero Vulnerability (CVE-2019-16168)
WordPress Plugin Product Addons & Fields for WooCommerce Same Origin Method Execution (SOME) (14.0)
WordPress Plugin Watu Quiz Cross-Site Scripting (3.1.2.4)
WordPress Plugin Request a Quote Cross-Site Scripting (2.0.0)