kses-based HTML filters for projects like WordPress, Moodle, Drupal, eGroupWare, Dokeos, PHP-Nuke, Geeklog, etc, have been found vulnerable to cross site scripting and code execution vulnerabilities.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/65167/ksesfilter.txt
Source: https://packetstormsecurity.com/files/65167/ksesfilter.txt.html

