CVE-2023-24601 Information

Description

OX App Suite before frontend 7.10.6-rev24 allows XSS via a non-app deeplink such as the jslob API’s registry sub-tree.

Reference

https://open-xchange.com http://seclists.org/fulldisclosure/2023/May/3

Share on: