Description
Sakai through 12.6 allows XSS via a chat user name.
Remediation
References
https://github.com/sakaiproject/sakai/pull/6971
Related Vulnerabilities
CVE-2018-20677 Vulnerability in maven package org.webjars.bower:bootstrap
CVE-2020-7660 Vulnerability in maven package org.webjars.npm:serialize-javascript
CVE-2020-28472 Vulnerability in maven package org.webjars.bower:aws-sdk
CVE-2022-41878 Vulnerability in npm package parse-server
CVE-2018-20676 Vulnerability in maven package org.webjars.bowergithub.twbs:bootstrap