Cross-site scripting (XSS) vulnerability in the user registration in PBLang 4.65, and possibly earlier versions, allows remote attackers to inject arbitrary web script or PHP via the location field.
https://exchange.xforce.ibmcloud.com/vulnerabilities/22190