Versions of Sling CMS prior to 0.16.0 have a vulnerability where the Sling Selector is not correctly escaped in generated URLs for navigational elements in the administrative consoles. This vulnerability exposes them to potential reflected XSS attacks.
Popular CVEs
CVE Id
Published Date
Is your System Free of Underlying Vulnerabilities? Find Out Now