CVE-2021-3536

All FrameworksJBoss/WildFlyCWE-79CVE-2021-3536

CVE-2021-3536

State: PUBLISHED · Published: 2021-05-20 · Updated: 2024-08-03 · Assigner: redhat
Description
A flaw was found in Wildfly in versions before 23.0.2.Final while creating a new role in domain mode via the admin console, it is possible to add a payload in the name field, leading to XSS. This affects Confidentiality and Integrity.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/3xxx/CVE-2021-3536.json