Report2Web v4.3.4.5 and v4.5.3 are vulnerable to XSS. v4.3.4.5 is also vulnerable to frame injection. Both issues are fixed in v4.6.0. Report2Web Login Panel XSS - CVE-2021-26710The value of the urll parameter is getting reflected without any sanitization, allowing a