Description
Characters in the GET url path are not properly escaped and can be reflected in the server response.
Remediation
References
https://snyk.io/vuln/SNYK-JS-IOBROKERWEB-534971
Related Vulnerabilities
CVE-2021-21685 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2021-4245 Vulnerability in maven package org.webjars.npm:rfc6902
CVE-2017-16078 Vulnerability in npm package shadowsock
CVE-2022-31160 Vulnerability in maven package org.webjars.npm:jquery-ui
CVE-2021-23648 Vulnerability in npm package @braintree/sanitize-url