Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Category Creation Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40815-html-injection-category/
Related Vulnerabilities
CVE-2019-5413 Vulnerability in npm package morgan
CVE-2023-38905 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core
CVE-2023-36820 Vulnerability in maven package io.micronaut.security:micronaut-security-oauth2
CVE-2023-48088 Vulnerability in maven package com.xuxueli:xxl-job-admin