Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Activity Search Criteria-Activity Number.
Remediation
References
https://www.esecforte.com/cve-2023-40809-html-injection-search/
Related Vulnerabilities
CVE-2020-7638 Vulnerability in npm package confinit
CVE-2021-29480 Vulnerability in maven package io.ratpack:ratpack-session
CVE-2021-23419 Vulnerability in npm package open-graph
CVE-2022-38639 Vulnerability in npm package markdown-nice
CVE-2021-46366 Vulnerability in maven package info.magnolia:magnolia-core