Description
OpenCRX version 5.2.0 is vulnerable to HTML injection via Activity Milestone Name Field.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-3017 | OpenCRX version 5.2.0 is vulnerable to HTML injection via Activity Milestone Name Field. |
Github GHSA |
GHSA-qjmx-q5m4-xqf5 | Cross-site Scripting in OpenCRX |
References
History
Fri, 27 Feb 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-28T20:08:48.322Z
Reserved: 2023-08-22T00:00:00.000Z
Link: CVE-2023-40816
Updated: 2024-08-02T18:46:10.531Z
Status : Modified
Published: 2023-11-18T04:15:07.877
Modified: 2024-11-21T08:20:10.127
Link: CVE-2023-40816
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA