Launchpad.net

CVE 2018-16405

An issue was discovered in Mayan EDMS before 3.0.2. The Appearance app sets window.location directly, leading to XSS.

See the CVE page on Mitre.org for more details.