Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Group Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40812-html-injection-accounts-group/
Related Vulnerabilities
CVE-2023-49145 Vulnerability in maven package org.apache.nifi:nifi-jolt-transform-json-ui
CVE-2023-30537 Vulnerability in maven package org.xwiki.platform:xwiki-platform-flamingo-theme-ui
CVE-2022-36083 Vulnerability in maven package org.webjars.npm:jose