2017-12-28 18:00:00
mitre
PUBLISHED
Cells Blog 3.5 has XSS via the jfdname parameter in an act=showpic request.