Looking for the vulnerability index of Invicti's legacy products?
Serendipity Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-10737) - Vulnerability Database

Serendipity Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-10737)

Description

Serendipity 2.0.4 has XSS via the serendipity_admin.php serendipity[body] parameter.

References

Related Vulnerabilities