Description
Sakai through 12.6 allows XSS via a chat user name.
Remediation
References
https://github.com/sakaiproject/sakai/pull/6971
Related Vulnerabilities
CVE-2022-23221 Vulnerability in maven package com.h2database:h2
CVE-2021-28092 Vulnerability in npm package is-svg
CVE-2021-27405 Vulnerability in npm package @progfay/scrapbox-parser
CVE-2020-13445 Vulnerability in maven package com.liferay:com.liferay.portal.template.freemarker
CVE-2020-2321 Vulnerability in maven package org.jenkins-ci.plugins:shelve-project-plugin