OpenCRX version 5.2.0 is vulnerable to HTML injection via the Activity Search Criteria-Activity Number.
{
    "nvd_published_at": "2023-11-18T04:15:07Z",
    "github_reviewed_at": "2023-11-20T23:09:38Z",
    "cwe_ids": [
        "CWE-79"
    ],
    "severity": "MODERATE",
    "github_reviewed": true
}