RHSA-2020:0481HighCVSS 7.5

Red Hat Security Advisory: Red Hat JBoss Fuse/A-MQ 6.3 R15 security and bug fix update

Published
February 12, 2020
Last Modified
August 4, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2015-9251 — jquery: Cross-site scripting via cross-domain ajax requests CVE-2019-10174 — infinispan: invokeAccessibly method from ReflectionUtil class allows to invoke private methods

🎯 Affected products1

  • Red Hat Fuse 6.3

✅ Remediation

Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. Installation instructions are located in the download section of the customer portal. The References section of this erratum contains a download link (you must log in to download the update). Workaround: There is no known mitigation for this issue.

🔗 References (8)