A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the X-Forwarded-For function in the header.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-51350.json"