Description
Improper Neutralization of Input During Web Page Generation (XSS or ‘Cross-site Scripting’) vulnerability in django CMS Association django CMS Attributes Fields allows Stored XSS.This issue affects django CMS Attributes Fields: before 4.0.
References
https://www.usom.gov.tr/bildirim/tr-24-1864
https://iltosec.com/blog/post/djangocms-attributes-field-300-stored-xss-vulnerability/
https://pypi.org/project/djangocms-attributes-field/#history