Serendipity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2016-10737 - Vulnerability Database

Serendipity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2016-10737

Medium
Reference: CVE-2016-10737
Title: Serendipity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Serendipity 2.0.4 has XSS via the serendipity_admin.php serendipitybody parameter.