Security Advisory

CVE-2022-23068

5.4
MEDIUM

Vulnerability Description

ToolJet versions v0.6.0 to v1.10.2 are vulnerable to HTML injection where an attacker can inject malicious code inside the first name and last name field while inviting a new user which will be reflected in the invitational e-mail.
Published Date May 18, 2022
Official Source NIST NVD Advisory