Bolt CMS <3.6.2 allows XSS via text input click preview button as demonstrated by the Title field of a Configured and New Entry.
- https://github.com/rdincel1/Bolt-CMS-3.6.2---Cross-Site-Scripting
- https://www.exploit-db.com/exploits/46014/
- https://github.com/ARPSyndicate/cvemon
- https://github.com/rdincel1/Bolt-CMS-3.6.2---Cross-Site-Scripting