CyberRota Analysis
AI-GeneratedThe vulnerability in Tribulant Software Newsletters allows for reflected cross-site scripting (XSS) due to improper input neutralization during web page generation. This can enable attackers to execute arbitrary scripts in the context of a user's session, potentially leading to data theft or session hijacking. Organizations using affected versions of Newsletters (up to 4.14) should prioritize remediation to protect their users from these exploits.
Original NVD Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tribulant Software Newsletters newsletters-lite allows Reflected XSS.This issue affects Newsletters: from n/a through <= 4.14.