CVE-2023-40817: Opencrx

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

OpenCRX version 5.2.0 is vulnerable to HTML injection via the Product Configuration Name Field.

Affected products

  • Opencrx Opencrx: version 5.2.0 only

Published 2023-11-18. Last modified 2026-06-17.