Hello, I found a vulnerability that allow inject javascript (XSS) and HTML. This vulnerability is in _ip2c.php_ and the parameter _qText_ PoC: http://localhost/.inc/ip2c.php?qText="/>HTML CODE