openCRX 5.2.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name field after creation of a Tracker in Manage Activity.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-27150.json"