Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Category Creation Name Field.
Remediation
References
https://www.esecforte.com/cve-2023-40815-html-injection-category/
Related Vulnerabilities
CVE-2018-18853 Vulnerability in maven package io.spray:spray-json_2.12
CVE-2022-25936 Vulnerability in npm package servst
CVE-2020-7702 Vulnerability in npm package templ8
CVE-2020-28441 Vulnerability in npm package conf-cfg-ini
CVE-2015-2944 Vulnerability in maven package org.apache.sling:org.apache.sling.servlets.post