Description
Grails Fields plugin version 2.2.7 contains a Cross Site Scripting (XSS) vulnerability in Using the display tag that can result in XSS . This vulnerability appears to have been fixed in 2.2.8.
Remediation
References
https://github.com/grails-fields-plugin/grails-fields/issues/278
https://github.com/martinfrancois/CVE-2018-1000529
Related Vulnerabilities
CVE-2019-6283 Vulnerability in maven package org.webjars.npm:node-sass
CVE-2018-3754 Vulnerability in npm package query-mysql
CVE-2021-29624 Vulnerability in npm package fastify-csrf
CVE-2020-11022 Vulnerability in npm package jquery
CVE-2022-28220 Vulnerability in maven package org.apache.james.protocols:protocols-api