Description
Grails Fields plugin version 2.2.7 contains a Cross Site Scripting (XSS) vulnerability in Using the display tag that can result in XSS . This vulnerability appears to have been fixed in 2.2.8.
Remediation
References
https://github.com/grails-fields-plugin/grails-fields/issues/278
https://github.com/martinfrancois/CVE-2018-1000529
Related Vulnerabilities
CVE-2021-23470 Vulnerability in npm package putil-merge
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core-api
CVE-2020-11002 Vulnerability in maven package io.dropwizard:dropwizard-validation
CVE-2020-8298 Vulnerability in npm package fs-path
CVE-2020-13942 Vulnerability in maven package org.apache.unomi:unomi-persistence-elasticsearch-core