Microweber before 1.2.1 contains multiple stored cross-site scripting vulnerabilities in Shop’s Other Settings, Autorespond E-mail Settings, and Payment Methods.
View the template here CVE-2022-0954.yaml
References:
https://github.com/microweber/microweber/commit/955471c27e671c49e4b012e3b120b004082ac3f7