Headline
GHSA-qh2w-9m7w-hjg2: Cross-site Scripting in JFinal
Cross Site Scripting (XSS) vulnerability in /admin/login password parameter in JFinalcms 5.0.0 allows attackers to run arbitrary code via crafted URL.
Cross-site Scripting in JFinal
Moderate severity GitHub Reviewed Published Jan 23, 2024 to the GitHub Advisory Database • Updated Jan 24, 2024