[description]
jerryhanjj ERP was discovered to contain a Cross Site Scripting (XSS) vulnerability .
[Vulnerability Type]
Cross Site Scripting (XSS)
[Vendor of Product]
ERP,https://github.com/jerryhanjj/ERP
[Affected Product Code Base]
commit<=44bd04758b7d21b44c9db0954ec636472a7c0acf
[Impact Escalation of Privileges]
true
[POC]
HTML file can be uploaded directly.