CVE-2015-3162
06.09.2017, 21:29
Cross-site scripting (XSS) vulnerability in the edit comment dialog in bkr/server/widgets.py in Beaker 20.1 allows remote authenticated users to inject arbitrary web script or HTML via writing a crafted comment on an acked or nacked canceled job.
Vendor | Product | Version |
---|---|---|
beaker-project | beaker | 20.1 |
𝑥
= Vulnerable software versions
References