We have performed a pen test on django admin module using a paid online tool as suggested by our client. It has raised a red flag for a chance of XSS attack in the user groups q