Description
Sakai through 12.6 allows XSS via a chat user name.
Remediation
References
https://github.com/sakaiproject/sakai/pull/6971
Related Vulnerabilities
CVE-2023-25500 Vulnerability in maven package com.vaadin:flow-server
CVE-2021-43788 Vulnerability in npm package nodebb
CVE-2020-28500 Vulnerability in maven package org.fujion.webjars:lodash
CVE-2022-25766 Vulnerability in npm package ungit
CVE-2022-45685 Vulnerability in maven package org.codehaus.jettison:jettison