Description
Cross-site scripting (XSS) vulnerability in the Devel module before 5.x-0.1 for Drupal allows remote attackers to inject arbitrary web script or HTML via a site variable, related to lack of escaping of the variable table.
Remediation
References
Related Vulnerabilities
WordPress Plugin WPS Child Theme Generator Directory Traversal (1.1)
OpenVPN AS Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2020-36382)
WordPress Plugin FeedWordPress Cross-Site Scripting (2014.0805)
YOURLS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3824)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2019-11048)