Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Group Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40812-html-injection-accounts-group/
Related Vulnerabilities
CVE-2020-7629 Vulnerability in npm package install-package
CVE-2020-15084 Vulnerability in maven package org.webjars.npm:express-jwt
CVE-2022-43418 Vulnerability in maven package org.jenkins-ci.plugins:katalon
CVE-2022-26183 Vulnerability in npm package pnpm
CVE-2020-7691 Vulnerability in maven package org.webjars.bower:jspdf