Description
A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML via a crafted SVG file.
Remediation
References
Related Vulnerabilities
WordPress Plugin Passster Age Gate Security Bypass (4.0.6)
Joomla Other Vulnerability (CVE-2006-1028)
WordPress Plugin Crowd Ideas Cross-Site Scripting (1.0)
WordPress Plugin Contact Form Email Cross-Site Scripting (1.1.49)
WordPress Plugin OAuth Single Sign On-SSO (OAuth Client) Security Bypass (6.22.5)