Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in social media links on a user profile due to lack of input validation.
- https://www.r29k.com/articles/bb/stored-xss-in-deskpro#anchor2
No PoCs found on GitHub currently.