Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Accounts Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40814-html-injection-accounts/
Related Vulnerabilities
CVE-2020-8203 Vulnerability in npm package lodash
CVE-2011-4905 Vulnerability in maven package org.apache.activemq:activemq-core
CVE-2020-26256 Vulnerability in maven package org.webjars.npm:fast-csv
CVE-2022-25912 Vulnerability in npm package simple-git
CVE-2012-5817 Vulnerability in maven package org.codehaus.xfire:xfire-core