Description
A Cross Site Scripting (XSS) vulnerabilitiy exits in jeecg-boot 3.0 in /jeecg-boot/jmreport/view with a mouseover event.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3223
Related Vulnerabilities
CVE-2020-28500 Vulnerability in maven package org.fujion.webjars:lodash
CVE-2022-22984 Vulnerability in npm package snyk-sbt-plugin
CVE-2018-18854 Vulnerability in maven package io.spray:spray-json_2.11
CVE-2022-39203 Vulnerability in npm package matrix-appservice-irc
CVE-2023-37962 Vulnerability in maven package io.jenkins.plugins:benchmark-evaluator