Crypt Server before 3.3.0 allows XSS in the index view. This is related to serial, computername, and username. https://github.com/grahamgilbert/Crypt-Server/releases/tag/3.3.0 https://github.com/grahamgilbert/Crypt-Server/pull/109
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2022-29589