A flaw was found in Wildfly in versions prior to 23.0.2.Final while creating a new role in domain mode via the admin console, it is possible to add a payload in the name field, leading to XSS. This affects Confidentiality and Integrity.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat build of quarkus - |
||
redhat data grid 8.0 |
||
redhat descision manager 7.0 |
||
redhat integration camel k - |
||
redhat integration camel quarkus - |
||
redhat integration service registry - |
||
redhat jboss a-mq 7 |
||
redhat jboss enterprise application platform 7.0 |
||
redhat wildfly |