First published: Wed Nov 15 2023(Updated: )
xxl-job-admin 2.4.0 is vulnerable to Cross Site Scripting (XSS) via /xxl-job-admin/joblog/logDetailPage.
Affected Software | Affected Version | How to fix |
---|---|---|
maven/com.xuxueli:xxl-job-admin | <=2.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is GHSA-6733-7rp7-vf3m.
The severity of this vulnerability is medium with a severity value of 5.4.
The affected software is xxl-job-admin version 2.4.0.
The vulnerability manifests as a Cross Site Scripting (XSS) issue in the /xxl-job-admin/joblog/logDetailPage.
At the time of writing, there is no known fix available for this vulnerability. It is recommended to update to a version of xxl-job-admin that does not have this vulnerability once a patch is released.