composer›rainlab/blog-plugin›CVE-2018-71986.1 MEDIUMImproper Neutralization of Input During Web Page Generation ('Cross-site Scripting')October CMS through 1.0.431 allows XSS by entering HTML on the Add Posts page.