Description
XSS in sexstatic <=0.6.2 causes HTML injection in directory name(s) leads to Stored XSS when malicious file is embed with
Remediation
References
https://hackerone.com/reports/328210
Related Vulnerabilities
CVE-2022-1440 Vulnerability in npm package git-interface
CVE-2016-0711 Vulnerability in maven package org.apache.portals.jetspeed-2:j2-admin
CVE-2020-26256 Vulnerability in npm package fast-csv
CVE-2020-2189 Vulnerability in maven package org.jenkins-ci.plugins:scm-filter-jervis
CVE-2020-28503 Vulnerability in maven package org.webjars.npm:copy-props