Description
Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2010-2422.
Remediation
References
Related Vulnerabilities
Joomla URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-24598)
Apache HTTP Server Other Vulnerability (CVE-2002-1593)
MySQL CVE-2021-2028 Vulnerability (CVE-2021-2028)
MySQL CVE-2020-2925 Vulnerability (CVE-2020-2925)
XWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2006-7223)