MolecularFaces before 0.3.0 is vulnerable to cross site scripting. A remote attacker can execute arbitrary JavaScript in the context of a victim browser via crafted molfiles.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-0758.json"