dolibarr/dolibarr

vulnerability html injection
severity 4.3
language php
registry packagist

Description

The application is vulnerable to html injection in password reset functionality.

PoC

Image of POC


<a href="javascript:alert(1)">CLICK ME</a>