Security Advisory
CVE-2021-45228
5.4
MEDIUM
Vulnerability Description
An XSS issue was discovered in COINS Construction Cloud 11.12. Due to insufficient neutralization of user input in the description of a task, it is possible to store malicious JavaScript code in the task description. This is later executed when it is reflected back to the user.
Published Date
April 14, 2022
Official Source
NIST NVD Advisory