Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40814-html-injection-accounts/
Related Vulnerabilities
CVE-2020-7631 Vulnerability in npm package diskusage-ng
CVE-2021-27290 Vulnerability in maven package org.webjars.npm:ssri
CVE-2022-41935 Vulnerability in maven package org.xwiki.platform:xwiki-platform-livetable-ui
CVE-2022-23621 Vulnerability in maven package org.xwiki.platform:xwiki-platform-oldcore
CVE-2021-43090 Vulnerability in maven package com.predic8:soa-model-core