Trilium prior to 0.52.4, 0.53.1-beta contains a cross-site scripting vulnerability which can allow an attacker to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site.
id: CVE-2022-2290
info:
name: Trilium <0.52.4 - Cross-Site Scripting
author: dbrwsky
severity
...