Plone CMS Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2021-33512 - Vulnerability Database

Plone CMS Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2021-33512

Medium
Reference: CVE-2021-33512
Title: Plone CMS Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Plone through 5.2.4 allows stored XSS attacks (by a Contributor) by uploading an SVG or HTML document.