First published: Sat Nov 18 2023(Updated: )
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Activity Search Criteria-Activity Number.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
maven/org.opencrx:opencrx-core-models | <=5.2.0 | |
Opencrx Opencrx | =5.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this OpenCRX vulnerability is CVE-2023-40809.
The title of this vulnerability is 'OpenCRX version 5.2.0 is vulnerable to HTML injection via the Activity Search Criteria-Activity Number'.
The affected software is OpenCRX version 5.2.0.
The type of vulnerability is HTML injection via the Activity Search Criteria-Activity Number.
The CWE ID for this vulnerability is CWE-79.