Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Group Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40812-html-injection-accounts-group/
Related Vulnerabilities
CVE-2021-28128 Vulnerability in npm package strapi
CVE-2022-39366 Vulnerability in maven package io.acryl:datahub-client
CVE-2021-32853 Vulnerability in npm package erxes
CVE-2022-25923 Vulnerability in npm package exec-local-bin
CVE-2022-24613 Vulnerability in maven package com.drewnoakes:metadata-extractor