First published: Tue Jan 28 2020(Updated: )
The user interface component of TIBCO Software Inc.'s TIBCO Patterns - Search contains multiple vulnerabilities that theoretically allow authenticated users to perform persistent cross-site scripting (XSS) attacks. Affected releases are TIBCO Software Inc.'s TIBCO Patterns - Search: versions 5.4.0 and below.
Credit: security@tibco.com
Affected Software | Affected Version | How to fix |
---|---|---|
TIBCO Patterns - Search | <=5.4.0 |
TIBCO has released updated versions of the affected components which address these issues. TIBCO Patterns - Search versions 5.4.0 and below update to version 5.5.0 or higher
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-17338 is rated as high with a CVSS score of 5.4.
To fix the persistent cross-site scripting vulnerability in TIBCO Patterns - Search (CVE-2019-17338), consider upgrading to a version beyond 5.4.0 or applying patches provided by TIBCO Software Inc.