F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.
- https://neroteam.com/blog/f-logic-datacube3-vulnerability-report
- https://github.com/fkie-cad/nvd-json-data-feeds