Description
Grails Fields plugin version 2.2.7 contains a Cross Site Scripting (XSS) vulnerability in Using the display tag that can result in XSS . This vulnerability appears to have been fixed in 2.2.8.
Remediation
References
https://github.com/grails-fields-plugin/grails-fields/issues/278
https://github.com/martinfrancois/CVE-2018-1000529
Related Vulnerabilities
CVE-2017-18869 Vulnerability in maven package org.webjars.npm:chownr
CVE-2022-41928 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-ui
CVE-2020-8203 Vulnerability in maven package org.fujion.webjars:lodash
CVE-2020-12648 Vulnerability in maven package org.webjars.npm:tinymce
CVE-2020-17519 Vulnerability in maven package org.apache.flink:flink-runtime_2.12