Description
faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20, allows Reflected XSS because a client window field is mishandled.
Published: 2019-10-02
Score: 6.1 Medium
EPSS: 5.6% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-5190 faces/context/PartialViewContextImpl.java in Eclipse Mojarra, as used in Mojarra for Eclipse EE4J before 2.3.10 and Mojarra JavaServer Faces before 2.2.20, allows Reflected XSS because a client window field is mishandled.
Github GHSA Github GHSA GHSA-rjhx-c9qh-qh8f Cross-site Scripting in Eclipse Mojarra
History

No history.

Subscriptions

Eclipse Mojarra
Oracle Application Testing Suite Banking Enterprise Product Manufacturing Communications Diameter Signaling Router Communications Network Integrity Communications Unified Inventory Management Enterprise Data Quality Health Sciences Information Manager Healthcare Data Repository Mojarra Javaserver Faces Primavera P6 Enterprise Project Portfolio Management Rapid Planning Retail Advanced Inventory Planning Retail Assortment Planning Retail Bulk Data Integration Retail Financial Integration Retail Integration Bus Retail Invoice Matching Retail Merchandising System Retail Service Backbone Retail Store Inventory Management Secure Global Desktop Time And Labor
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T01:33:16.741Z

Reserved: 2019-10-02T00:00:00.000Z

Link: CVE-2019-17091

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-10-02T14:15:12.600

Modified: 2024-11-21T04:31:40.197

Link: CVE-2019-17091

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses