Description
xxl-job-admin 2.4.0 is vulnerable to Cross Site Scripting (XSS) via /xxl-job-admin/joblog/logDetailPage.
Remediation
References
https://github.com/xuxueli/xxl-job/issues/3329
Related Vulnerabilities
CVE-2023-49378 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-41966 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2023-33246 Vulnerability in maven package org.apache.rocketmq:rocketmq-namesrv
CVE-2023-40815 Vulnerability in maven package org.opencrx:opencrx-core-models