Description
Craft is a CMS for creating custom digital experiences on the web. Cross-site scripting (XSS) can be triggered via the Update Asset Index utility. This issue has been patched in version 4.4.6.
Remediation
References
Related Vulnerabilities
Drupal Other Vulnerability (CVE-2006-3570)
MySQL CVE-2013-0367 Vulnerability (CVE-2013-0367)
XWiki Improper Restriction of XML External Entity Reference Vulnerability (CVE-2023-27480)
Magento CVE-2019-8231 Vulnerability (CVE-2019-8231)
WordPress Plugin Export any WordPress data to XML/CSV SQL Injection (1.3.4)