Typesetter CMS 5.x through 5.1 allows admins to conduct Site Title persistent XSS attacks via an Admin/Configuration URI. NOTE: the significance of this report is disputed because "admins are considered trustworthy.
- https://www.exploit-db.com/exploits/48852
- https://github.com/fkie-cad/nvd-json-data-feeds