Fedora Account System
Red Hat Associate
Red Hat Customer
This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it would not have its contents escaped. https://snyk.io/vuln/SNYK-JS-DATATABLESNET-1540544 https://github.com/DataTables/Dist-DataTables/commit/59a8d3f8a3c1138ab08704e783bc52bfe88d7c9b https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1715376 https://cdn.datatables.net/1.11.3/ https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWER-1715371 https://lists.debian.org/debian-lts-announce/2023/08/msg00018.html
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform 7.4 on RHEL 7 Via RHSA-2024:3559 https://access.redhat.com/errata/RHSA-2024:3559
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform 7.4 for RHEL 9 Via RHSA-2024:3561 https://access.redhat.com/errata/RHSA-2024:3561
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform 7.4 for RHEL 8 Via RHSA-2024:3560 https://access.redhat.com/errata/RHSA-2024:3560
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform Via RHSA-2024:3563 https://access.redhat.com/errata/RHSA-2024:3563
This issue has been addressed in the following products: Red Hat JBoss Enterprise Application Platform 7 Via RHSA-2024:3563 https://access.redhat.com/errata/RHSA-2024:3563