Description
MODX Revolution through v2.7.0-pl allows XSS via a document resource (such as pagetitle), which is mishandled during an Update action, a Quick Edit action, or the viewing of manager logs.
Remediation
References
Related Vulnerabilities
WordPress Plugin Yakadanda Google+ Hangout Events Cross-Site Scripting (0.3.7)
WordPress Plugin WP Logs Book Cross-Site Scripting (1.0.1)
WordPress Plugin PowerPack for Beaver Builder Privilege Escalation (2.33.0)
WordPress Plugin WP Data Access SQL Injection (4.3.1)
WordPress Plugin Facebook Button by BestWebSoft Cross-Site Scripting (2.33)