CMS Made Simple 2.2.8 allows XSS via an uploaded SVG document, a related issue to CVE-2017-16798.
No PoCs from references.
- https://github.com/0xT11/CVE-POC