Description
Craft is a CMS for creating custom digital experiences. Cross site scripting (XSS) can be triggered by review volumes. This issue has been fixed in version 4.4.7.
Remediation
References
Related Vulnerabilities
PHP upload arbitrary file disclosure vulnerability
osTicket CVE-2018-7195 Vulnerability (CVE-2018-7195)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2687)
WordPress Plugin WooCommerce Amazon Affiliates Multiple Vulnerabilities (8.0)
WordPress Plugin Form Builder-Create Responsive Contact Forms Cross-Site Scripting (1.9.8.4)