kkFileView 4.0.0 contains multiple cross-site scripting vulnerabilities via the urls and currentUrl parameters at /controller/OnlinePreviewController.java.
id: CVE-2022-29349
info:
name: kkFileView 4.0.0 - Cross-Site Scripting
author: arafatansari
s
...