Firefly III (aka firefly-iii) before 6.1.1 allows webhooks HTML Injection.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-22075.json"