Squiz · Squiz Matrix · CVE-2017-14197
**Name of the Vulnerable Software and Affected Versions**
Squiz Matrix versions prior to 5.3.6.1
Squiz Matrix versions 5.4.x prior to 5.4.1.3
**Description**
An issue was discovered in Squiz Matrix, which involves multiple reflected Cross-Site Scripting (XSS) issues in Matrix WYSIWYG plugins.
**Recommendations**
For Squiz Matrix versions prior to 5.3.6.1, update to version 5.3.6.1 or later.
For Squiz Matrix versions 5.4.x prior to 5.4.1.3, update to version 5.4.1.3 or later.