Headline
GHSA-373r-9mg8-3jc4: Apache Geode vulnerable to Cross-Site Scripting
Apache Geode versions up to 1.15.0 are vulnerable to a Cross-Site Scripting (XSS) via data injection when using Pulse web application to view Region entries.
Apache Geode vulnerable to Cross-Site Scripting
Moderate severity GitHub Reviewed Published Oct 25, 2022 • Updated Oct 25, 2022
Related news
CVE-2022-34870
Apache Geode versions up to 1.15.0 are vulnerable to a Cross-Site Scripting (XSS) via data injection when using Pulse web application to view Region entries.