silverstripe/framework is vulnerable to XSS in Page name where the payload "><svg/onload=alert(/xss/)> will trigger an XSS alert.
| Software | From | Fixed in |
|---|---|---|
silverstripe / framework
|
3.4.0-rc1 | 3.4.4 |
silverstripe / framework
|
3.5.0-rc1 | 3.5.2 |