Description
The Image Import function in XWiki through 10.7 has XSS.
Remediation
References
Related Vulnerabilities
MediaWiki Incorrect Default Permissions Vulnerability (CVE-2011-4361)
WordPress Plugin WordPress Social Login Cross-Site Scripting (2.0.3)
MySQL Other Vulnerability (CVE-2003-0150)
WordPress Plugin All-in-One WP Migration Cross-Site Scripting (7.62)
Python URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2016-1000110)