DomainMOD up to and including 4.11.01 has XSS via the assets/add/registrar.php notes field for the Registrar.
domainmod domainmod