Description
A Cross Site Scripting (XSS) vulnerabilitiy exits in jeecg-boot 3.0 in /jeecg-boot/jmreport/view with a mouseover event.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3223
Related Vulnerabilities
CVE-2014-125087 Vulnerability in maven package com.jamesmurty.utils:java-xmlbuilder
CVE-2021-23355 Vulnerability in npm package ps-kill
CVE-2020-7788 Vulnerability in maven package org.webjars.npm:ini
CVE-2023-25345 Vulnerability in maven package org.webjars.npm:swig-templates
CVE-2023-25762 Vulnerability in maven package org.jenkins-ci.plugins:pipeline-build-step