[MAVEN:GHSA-4262-WR7P-GPCJ] Rundeck Community Edition vulnerable to Cross-site Scripting

Severity Moderate
Affected Packages 1
Fixed Packages 1
CVEs 1

An XSS issue was discovered on the Job Edit page in Rundeck Community Edition before 3.0.13, related to assets/javascripts/workflowStepEditorKO.js and views/execution/_wfitemEdit.gsp.

Package Affected Version
pkg:maven/org.rundeck/rundeck < 3.0.13
Package Fixed Version
pkg:maven/org.rundeck/rundeck = 3.0.13
ID
MAVEN:GHSA-4262-WR7P-GPCJ
Severity
moderate
URL
https://github.com/advisories/GHSA-4262-wr7p-gpcj
Published
2022-05-13T01:06:55
(2 years ago)
Modified
2023-04-14T19:13:15
(17 months ago)
Rights
Maven Security Team
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/org.rundeck/rundeck org.rundeck rundeck < 3.0.13
Fixed pkg:maven/org.rundeck/rundeck org.rundeck rundeck = 3.0.13
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...