Description
An issue was discovered in Craft CMS before 3.6.0. In some circumstances, a potential XSS vulnerability existed in connection with front-end forms that accepted user uploads.
Remediation
References
Related Vulnerabilities
WordPress Plugin SendPress Newsletters Multiple Vulnerabilities (1.1.7.21)
Oracle JRE CVE-2022-21624 Vulnerability (CVE-2022-21624)
MySQL CVE-2012-0116 Vulnerability (CVE-2012-0116)
WordPress Plugin Database Backup for WordPress 'edit.php' Directory Traversal (1.7)
WordPress Plugin WP e-Commerce Shop Styling Remote File Inclusion (1.7.2)