CVE-2023-49781 | NocoDB up to 0.202.8 Formula.vue replaceUrlsWithLink urls cross site scripting
A vulnerability was found in NocoDB up to 0.202.8. It has been rated as problematic. This affects the function replaceUrlsWithLink of the file nc-gui/components/virtual-cell/Formula.vue. This manipulation of the argument urls causes cross site scripting.
The identification of this vulnerability is CVE-2023-49781. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.