Description
Cross-site scripting (XSS) vulnerability in Business Process Editor in Red Hat JBoss BPM Suite before 6.3.3 allows remote authenticated users to inject arbitrary web script or HTML by levering permission to create business processes.
Remediation
References
http://rhn.redhat.com/errata/RHSA-2016-1968.html
http://rhn.redhat.com/errata/RHSA-2016-1969.html
http://www.securityfocus.com/bid/93219
https://bugzilla.redhat.com/show_bug.cgi?id=1358523
Related Vulnerabilities
CVE-2023-22491 Vulnerability in npm package gatsby-transformer-remark
CVE-2021-21122 Vulnerability in npm package electron
CVE-2023-27481 Vulnerability in npm package directus
CVE-2023-34189 Vulnerability in maven package org.apache.inlong:manager-web
CVE-2020-2217 Vulnerability in maven package org.jenkins-ci.plugins:compatibility-action-storage