Reflected cross-site scripting (XSS) In org.jboss.resteasy:resteasy-client
Description
Improper Neutralization of Input During Web Page Generation in RESTEasy Cross-site scripting (XSS) vulnerability in the default exception handler in RESTEasy allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
maven | 3.0.20.final, 3.1.0.cr1 | ||
debian 13 | 3.0.26-1 | ||
debian 12 | 3.0.26-1 | ||
debian 14 | 3.0.26-1 | ||
maven | 3.1.0.final | ||
debian 11 | 3.0.26-1 | ||
rpm rhel7 | - | - |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2.