IBM Content Navigator 3.0.11, 3.0.15, and 3.1.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.
2025-05-16T01:15:51.673
2025-06-04T20:02:45.390
Analyzed
CVSSv3.1: 5.4 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | content_navigator | 3.0.11 | Yes |
Application | ibm | content_navigator | 3.0.15 | Yes |
Application | ibm | content_navigator | 3.1.0 | Yes |