Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Elgg through 1.7.10 has XSS
Elgg through 1.7.10 has XSS
elgg is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
elgg is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
elgg is vulnerable to Authorization Bypass Through User-Controlled Key
Elgg has an open redirect.