In CmsEasy 7.0, there is XSS via the ckplayer.php url parameter.Referenceshttps://github.com/fakerrr/CmsEasy_7.0/issues/1