RHSA-2022:8865: Moderate: Red Hat OpenStack 16.1.9 (python-XStatic-Bootstrap-SCSS) security update
Bootstrap style library packaged for setuptools (easyinstall) / pip.Security Fix(es): XSS in the tooltip or popover data-template attribute (CVE-2019-8331) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:8865?
The severity of RHSA-2022:8865 is classified as moderate.
How do I fix RHSA-2022:8865?
To fix RHSA-2022:8865, you should upgrade to version 3.4.1.0-2.el8 or later of the xstatic-bootstrap-scss-common package.
What vulnerability is addressed in RHSA-2022:8865?
RHSA-2022:8865 addresses a cross-site scripting (XSS) vulnerability in the tooltip or popover data-template attribute.
What is the impact of the vulnerability in RHSA-2022:8865?
The impact of the vulnerability in RHSA-2022:8865 could allow an attacker to execute arbitrary JavaScript in the context of the user's session.
Which package is affected by RHSA-2022:8865?
The affected package in RHSA-2022:8865 is xstatic-bootstrap-scss-common.