Plone CMS Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2021-33513
Plone through 5.2.4 allows XSS via the inline_diff methods in Products.CMFDiffTool.
Plone through 5.2.4 allows XSS via the inline_diff methods in Products.CMFDiffTool.