Description
IBM Jazz Foundation (IBM Rational Collaborative Lifecycle Management 5.0 through 6.0.6) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 145509.
Remediation
References
Related Vulnerabilities
Contao Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-37626)
Sqlite NULL Pointer Dereference Vulnerability (CVE-2019-19242)
WordPress Plugin WP Inventory Manager Cross-Site Scripting (1.7.8)
WordPress Plugin BAVOKO SEO Tools-All-in-One WordPress SEO Security Bypass (2.1.9.7)