composer›contao/comments-bundle›CVE-2024-282344.3 MEDIUMContao: Insufficient BBCode sanitizerIf BBCode is enabled for comments, users can inject CSS styles.