Description
Cross-site scripting (XSS) vulnerability in the typoLink function in TYPO3 6.2.x before 6.2.16 and 7.x before 7.6.1 allows remote authenticated editors to inject arbitrary web script or HTML via a link field.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2024-20919 Vulnerability (CVE-2024-20919)
Oracle JRE Incorrect Conversion between Numeric Types Vulnerability (CVE-2022-34169)
WebLogic CVE-2019-2827 Vulnerability (CVE-2019-2827)
WordPress Plugin Popup Modal For Youtube Cross-Site Scripting (1.0.1)
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-2787)