Description
XXL-Job v2.3.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via /xxl-job-admin/jobinfo.
Remediation
References
https://github.com/xuxueli/xxl-job/issues/2836
Related Vulnerabilities
CVE-2021-43138 Vulnerability in npm package async
CVE-2022-34298 Vulnerability in maven package org.openidentityplatform.openam:openam-auth-nt
CVE-2023-27095 Vulnerability in maven package cn.hippo4j:hippo4j-core
CVE-2020-14966 Vulnerability in maven package org.webjars.npm:jsrsasign
CVE-2022-22963 Vulnerability in maven package org.springframework.cloud:spring-cloud-function-core