fig. 01 — GHSA-3qp6-m7hp-jrwf, the advisory selected below
// advisories
GHSA-3qp6-m7hp-jrwf
MODERATECVE-2021-36739
The "first name" and "last name" fields of the Apache Pluto 3.1.0 MVCBean JSP portlet maven archetype are vulnerable to Cross-Site Scripting (XSS) attacks.