SoftVibe SARABAN for INFOMA 1.1 is vulnerable to stored cross-site scripting (XSS) that allows users to store scripts in certain fields (e.g. subject, description) of the document form.
https://sawatdee.github.io/post/2021/12/24/First-CVEs.html
https://play.google.com/store/apps/details?id=th.co.softvibe.saraban&hl=en&gl=US