F045. HTML code injection


The application’s fields allow the injection of HTML code. This could enable attackers to modify the application’s appearance in order to trick its users into performing undesired actions.

