First published: Sat Nov 18 2023(Updated: )
OpenCRX version 5.2.0 is vulnerable to HTML injection via the Category Creation Name Field.
Affected Software | Affected Version | How to fix |
---|---|---|
maven/org.opencrx:opencrx-core-models | <=5.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is GHSA-hhcf-79pm-r8r9.
The vulnerability type is HTML injection.
The vulnerability occurs due to HTML injection via the Category Creation Name Field.
OpenCRX version 5.2.0 is affected by the vulnerability.
To fix the vulnerability, it is recommended to update to a version that is not affected by the vulnerability or apply a patch provided by the vendor.