Home / Web Application Vulnerabilities / PHP-Fusion Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-17449)
PHP-Fusion 9.03 allows XSS via the error_log file.