Description
The dotCMS 4.1.1 application is vulnerable to Stored Cross-Site Scripting (XSS) affecting a vanity-urls Title field, a containers Description field, and a templates Description field.
Remediation
References
Related Vulnerabilities
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-0195)
WebLogic CVE-2021-2018 Vulnerability (CVE-2021-2018)
MySQL CVE-2018-3277 Vulnerability (CVE-2018-3277)
WordPress Plugin Simple Download Monitor Multiple Vulnerabilities (3.9.5.1)
WordPress Plugin WP Fastest Cache Cross-Site Request Forgery (0.9.0.2)