CVE-2022-2924

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in packagist/yetiforce/yetiforce-crm

Identifiers

GHSA-2qf8-h7pr-x2r8, CVE-2022-2924

Package Slug

packagist/yetiforce/yetiforce-crm

Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Description

Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.3.

Affected Versions

All versions up to 6.4.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2022-09-22

source