Description
IBM Rational Team Concert 5.0 through 6.0.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 154136.
Remediation
References
Related Vulnerabilities
WordPress Plugin Like Button Rating-LikeBtn Server-Side Request Forgery (2.6.31)
WordPress Plugin Local Weather Cross-Site Scripting (1.0)
Jboss EAP Inadequate Encryption Strength Vulnerability (CVE-2019-14887)
WordPress Plugin Mini Mail Dashboard Widget 'abspath' Parameter Remote File Include (1.36)
qdPM Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-26180)