Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Group Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40812-html-injection-accounts-group/
Related Vulnerabilities
CVE-2023-38509 Vulnerability in maven package org.xwiki.platform:xwiki-platform-livetable-ui
CVE-2019-18608 Vulnerability in npm package cezerin
CVE-2019-10742 Vulnerability in maven package org.webjars.bower:axios
CVE-2021-23439 Vulnerability in npm package file-upload-with-preview
CVE-2023-48711 Vulnerability in npm package google-translate-api-browser