Security Advisory
CVE-2021-24156
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Stored Cross-Site Scripting vulnerabilities in Testimonial Rotator 3.0.3 allow low privileged users (Contributor) to inject arbitrary JavaScript code or HTML without approval. This could lead to privilege escalation