Description
Craft CMS before 3.3.8 has stored XSS via a name field. This field is mishandled during site deletion.
Remediation
References
Related Vulnerabilities
WordPress Plugin Infusionsoft Gravity Forms Add-on Arbitrary File Upload (1.5.10)
Perl Improper Certificate Validation Vulnerability (CVE-2023-31484)
ownCloud Improper Input Validation Vulnerability (CVE-2014-2585)
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-45038)