Description
Multiple cross-site scripting (XSS) vulnerabilities in Serendipity before 2.0.5 allow remote authenticated users to inject arbitrary web script or HTML via a category or directory name.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Gallery Cross-Site Scripting (1.0)
WordPress Plugin Product Input Fields for WooCommerce Arbitrary File Download (1.2.6)
OpenSSL Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-1633)
WordPress Plugin Video Gallery /w YouTube, Vimeo Multiple Vulnerabilities (8.80)
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Cross-Site Scripting (9.1)