Description
Craft is a CMS for creating custom digital experiences on the web. A malformed RSS feed can deliver an XSS payload. This issue was patched in version 4.4.6.
Remediation
References
Related Vulnerabilities
Django Improper Authentication Vulnerability (CVE-2021-44420)
Magento Deserialization of Untrusted Data Vulnerability (CVE-2019-8141)
Python CVE-2018-1060 Vulnerability (CVE-2018-1060)
MySQL CVE-2018-2758 Vulnerability (CVE-2018-2758)
WordPress Plugin WP Upload Restriction Multiple Vulnerabilities (2.2.3)