Description
WordPress before 5.2.3 allows XSS in shortcode previews.
Remediation
References
Related Vulnerabilities
SugarCRM Improper Restriction of XML External Entity Reference Vulnerability (CVE-2014-3244)
WordPress Plugin WP Favorite Posts Cross-Site Scripting (1.6.5)
WordPress Plugin Postie 'From' Field Cross-Site Scripting (1.4.3)
WordPress Other Vulnerability (CVE-2007-3241)
Joomla! Core 1.5.x Multiple Cross-Site Scripting Vulnerabilities (1.5.0 - 1.5.20)