Description
Inadequate escaping lead to XSS vulnerability in the search module in ownCloud Server before 8.2.12, 9.0.x before 9.0.10, 9.1.x before 9.1.6, and 10.0.x before 10.0.2. To be exploitable a user has to write or paste malicious content into the search dialogue.
Remediation
References
Related Vulnerabilities
Cherokee Out-of-bounds Write Vulnerability (CVE-2019-20800)
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.154)
WordPress Plugin ClickBank Affiliate Ads Multiple Vulnerabilities (1.7)
WordPress Plugin Social Sharing Toolkit Cross-Site Scripting (2.6)
WordPress Plugin Social Media Widget by Acurax Multiple Unspecified Vulnerabilities (3.2.3)