Description
JFinalcms 5.0.0 is vulnerable to Cross Site Scripting (XSS) via Label management editing.
Remediation
References
https://github.com/Jarvis-616/cms/blob/master/Label%20management%20editing%20with%20stored%20XSS.md
Related Vulnerabilities
CVE-2019-5786 Vulnerability in maven package org.webjars.npm:puppeteer
CVE-2023-26120 Vulnerability in maven package com.xuxueli:xxl-job
CVE-2020-7663 Vulnerability in maven package org.webjars.npm:websocket-extensions
CVE-2018-13863 Vulnerability in npm package bson
CVE-2020-8913 Vulnerability in maven package com.google.android.play:core