Description
An issue was discovered in ProjectSend before r1053. XSS exists in the "Name" field on the My Account page.
Remediation
References
Related Vulnerabilities
WordPress Plugin RSVP and Event Management Cross-Site Scripting (2.3.7)
PostgreSQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-32028)
XWiki CVE-2007-4898 Vulnerability (CVE-2007-4898)
WordPress Plugin Limit Login Attempts Reloaded Security Bypass (2.17.3)
WordPress Plugin Google Analytics Dashboard Multiple Unspecified Vulnerabilities (2.0.5)