First published: Thu Sep 12 2024(Updated: )
Migration Toolkit for Runtimes 1.2.7 Images<br>Security Fix(es):<br><li> org.jsoup/jsoup: The jsoup cleaner may incorrectly sanitize crafted XSS attempts if SafeList.preserveRelativeLinks is enabled (CVE-2022-36033)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Migration Toolkit for Runtimes |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:6656 is classified as moderate.
RHSA-2024:6656 addresses a vulnerability in org.jsoup/jsoup that may incorrectly sanitize crafted XSS attempts when SafeList.preserveRelativeLinks is enabled.
To fix RHSA-2024:6656, you should update the Red Hat Migration Toolkit for Runtimes to the latest version provided by Red Hat.
The affected product for RHSA-2024:6656 is the Red Hat Migration Toolkit for Runtimes.
There are no specific workarounds mentioned for the issues in RHSA-2024:6656, and updating is recommended.