A cross-site scripting (XSS) vulnerability in the Article module of SPIP v4.3.3 allows authenticated attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Title parameter.
- https://grimthereaperteam.medium.com/ec1e8714c02e
No PoCs found on GitHub currently.