QID 980933
QID 980933: Java (maven) Security Update for org.hswebframework.web:hsweb-commons (GHSA-qqv6-5w6p-3pgr)
An issue was discovered in hsweb 3.0.4. It is a reflected XSS vulnerability due to the absence of type parameter checking in FlowableModelManagerController.java.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-qqv6-5w6p-3pgr for updates pertaining to this vulnerability.
Vendor References
- GHSA-qqv6-5w6p-3pgr -
github.com/advisories/GHSA-qqv6-5w6p-3pgr
CVEs related to QID 980933
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-qqv6-5w6p-3pgr | org.hswebframework.web:hsweb-commons |
|