Debian Security Advisory 1568-1 – “unsticky” discovered that b2evolution, a blog engine, performs insufficient input sanitising, allowing for cross site scripting.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/66012/dsa-1568-1.txt
Source: https://packetstormsecurity.com/files/66012/Debian-Linux-Security-Advisory-1568-1.html

