RHSA-2020:4211MediumCVSS 6.1
Red Hat Security Advisory: Red Hat AMQ Interconnect 1.9.0 release and security update
🔗 CVE IDs covered (3)
📋 Description
CVE-2020-7656 — jquery: Cross-site scripting (XSS) via HTML tags containing whitespaces CVE-2020-11022 — jquery: Cross-site scripting due to improper injQuery.htmlPrefilter method CVE-2020-11023 — jquery: Untrusted code execution via tag in HTML passed to DOM manipulation methods
🔗 References (14)
- selfhttps://access.redhat.com/errata/RHSA-2020:4211
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://access.redhat.com/jbossnetwork/restricted/listSoftware.html?product=jboss.amq.interconnect&downloadType=distributions&version=1.9.0
- externalhttps://access.redhat.com/documentation/en-us/red_hat_amq/
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1828406
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1850004
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1850119
- externalhttps://issues.redhat.com/browse/ENTMQIC-2448
- externalhttps://issues.redhat.com/browse/ENTMQIC-2455
- externalhttps://issues.redhat.com/browse/ENTMQIC-2460
- externalhttps://issues.redhat.com/browse/ENTMQIC-2481
- externalhttps://issues.redhat.com/browse/ENTMQIC-2485
- externalhttps://issues.redhat.com/browse/ENTMQIC-2492
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_4211.json