Fedora Account System
Red Hat Associate
Red Hat Customer
Cross Site Scripting (XSS) vulnerability exists in Catfish <=6.3.0 via a Google search in url:/catfishcms/index.php/admin/Index/addmenu.htmland then the .html file on the website that uses this editor (the file suffix is allowed). Upstream Issue: https://github.com/xwlrbh/Catfish/issues/9
Created catfish tracking bugs for this issue: Affects: fedora-all [bug 2036709]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.