Description
JFinalCMS v5.0.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the model management department.
Remediation
References
https://github.com/Rabb1ter/cms/blob/main/There%20is%20a%20stored%20XSS%20in%20the%20model%20management%20department.md
Related Vulnerabilities
CVE-2019-12086 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2017-16118 Vulnerability in npm package forwarded
CVE-2021-46440 Vulnerability in npm package strapi
CVE-2022-39203 Vulnerability in npm package matrix-appservice-irc
CVE-2023-44487 Vulnerability in maven package io.helidon.http:helidon-http-http2