Description
Reflected XSS exists in client/res/templates/global-search/name-field.tpl in EspoCRM 5.3.6 via /#Account in the search panel.
Remediation
References
Related Vulnerabilities
WordPress Plugin PayPal for WooCommerce Security Bypass (1.5.7)
Contao Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-37626)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1734)
WordPress Plugin Active Directory Integration/LDAP Integration Cross-Site Scripting (3.6.94)