Description
Reflected XSS exists in client/res/templates/global-search/name-field.tpl in EspoCRM 5.3.6 via /#Account in the search panel.
Remediation
References
Related Vulnerabilities
MySQL CVE-2022-21311 Vulnerability (CVE-2022-21311)
TYPO3 Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2014-9508)
Drupal Core 7.x Open Redirect (7.0 - 7.69)
WordPress Plugin Product Catalog Multiple Vulnerabilities (4.2.11)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-45149)