Nucleus CMS 3.70 allows HTML Injection via the index.php body parameter.
- https://github.com/NucleusCMS/NucleusCMS/issues/84
- https://github.com/0xT11/CVE-POC