Description
Characters in the GET url path are not properly escaped and can be reflected in the server response.
Remediation
References
https://snyk.io/vuln/SNYK-JS-IOBROKERWEB-534971
Related Vulnerabilities
CVE-2019-10308 Vulnerability in maven package org.jvnet.hudson.plugins:analysis-core
CVE-2022-31147 Vulnerability in maven package org.webjars.npm:jquery-validation
CVE-2019-10463 Vulnerability in maven package org.jenkins-ci.plugins:dynatrace-dashboard
CVE-2021-28164 Vulnerability in maven package org.eclipse.jetty:jetty-webapp
CVE-2018-18893 Vulnerability in maven package com.hubspot.jinjava:jinjava