First published: Thu Jan 10 2019(Updated: )
Bodhi 2.9.0 and lower is vulnerable to cross-site scripting resulting in code injection caused by incorrect validation of bug titles.
Credit: patrick@puiterwijk.org patrick@puiterwijk.org
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Bodhi | <=2.9.0 | |
pip/bodhi | <=2.9.0 | 2.9.1 |
<=2.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.