AI Score
Confidence
High
EPSS
Percentile
36.3%
Multiple cross-site scripting (XSS) vulnerabilities in JBPM KIE Workbench 6.0.x allow remote authenticated users to inject arbitrary web script or HTML via vectors related to task name html inputs.
bugzilla.redhat.com/show_bug.cgi?id=1048380
github.com/kiegroup/jbpm-wb/commit/4818204506e8e94645b52adb9426bedfa9ffdd04
github.com/kiegroup/jbpm-wb/compare/6.0.x