Subrion CMS 4.2.1 allows _core/en/contacts/ XSS via the name, email, or phone parameter.
- https://github.com/intelliants/subrion/issues/821
No PoCs found on GitHub currently.