Description
Affected versions of Team Calendar in Confluence Server before 7.11.0 allow attackers to inject arbitrary HTML or Javascript via a Cross Site Scripting Vulnerability in admin global setting parameters.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2023-21968 Vulnerability (CVE-2023-21968)
WordPress Plugin WP Content Filter Unspecified Vulnerability (2.42)
WordPress Plugin Question Answer Multiple Cross-Site Scripting Vulnerabilities (1.2.30)
WordPress Plugin WordPress Portfolio and Gallery-GridKit Gallery Unspecified Vulnerability (1.8.18)
WordPress Plugin 301 Redirects-Easy Redirect Manager SQL Injection (2.50)