Vulnerabilities > Opencrx > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-29 CVE-2021-25959 Cross-site Scripting vulnerability in Opencrx
In OpenCRX, versions v4.0.0 through v5.1.0 are vulnerable to reflected Cross-site Scripting (XSS), due to unsanitized parameters in the password reset functionality.
network
low complexity
opencrx CWE-79
6.1