CVE-2022-3004

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in packagist/yetiforce/yetiforce-crm

Identifiers

GHSA-qwc8-vjh3-gm2j, CVE-2022-3004

Package Slug

packagist/yetiforce/yetiforce-crm

Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Description

Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

Affected Versions

All versions up to 6.4.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2022-09-22

source