Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Category Creation Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40815-html-injection-category/
Related Vulnerabilities
CVE-2021-23342 Vulnerability in maven package org.webjars.npm:docsify
CVE-2021-32736 Vulnerability in npm package think-helper
CVE-2023-30528 Vulnerability in maven package org.jenkins-ci.plugins:wso2id-oauth
CVE-2021-44138 Vulnerability in maven package com.caucho:resin
CVE-2021-29441 Vulnerability in maven package com.alibaba.nacos:nacos-common