Lucene search

K
osvGoogleOSV:GHSA-5CG5-7VW6-JW4R
HistoryMay 24, 2022 - 5:11 p.m.

Ignite Realtime Openfire allows Cross-site Scripting

2022-05-2417:11:57
Google
osv.dev
6
ignite realtime
openfire
xss
vulnerability
version 4.4.1
version 4.4.2

EPSS

0.001

Percentile

37.3%

Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp password parameter. This issue was fixed in version 4.4.2.

EPSS

0.001

Percentile

37.3%

Related for OSV:GHSA-5CG5-7VW6-JW4R