Cross Site Scripting vulnerability in inducer relate before v.2024.1 allows a remote attacker to escalate privileges via a crafted payload to the Answer field of InlineMultiQuestion parameter on Exam function.
- https://packetstormsecurity.com/files/178101/Relate-Cross-Site-Scripting.html
- https://portswigger.net/web-security/cross-site-scripting/stored
- https://github.com/fkie-cad/nvd-json-data-feeds