Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Group Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40812-html-injection-accounts-group/
Related Vulnerabilities
CVE-2023-2507 Vulnerability in npm package clevertap-cordova
CVE-2021-23358 Vulnerability in npm package underscore
CVE-2020-19697 Vulnerability in maven package org.webjars.npm:editor.md
CVE-2023-34455 Vulnerability in maven package org.xerial.snappy:snappy-java
CVE-2019-20149 Vulnerability in maven package org.webjars.bowergithub.jonschlinkert:kind-of