It was found that the smallrye health metrics UI component did not properly sanitize some user inputs. An attacker could use this flaw to conduct cross-site scripting attacks.
2022-08-25T20:15:09.363
2024-11-21T06:22:45.870
Modified
CVSSv3.1: 6.1 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | redhat | build_of_quarkus | < 2.7.5 | Yes |
| Application | redhat | build_of_quarkus | - | Yes |
| Application | redhat | openshift_application_runtimes | 1.0 | Yes |
| Application | redhat | smallrye_health | - | Yes |