Vulnerability Bulletins

IBM Security Bulletin: IBM Dojo Toolkit XSS vulnerability affecting Rational Business Developer v8.0

   
Affected software IBM
 
IBM Dojo Toolkit is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. Rational Business Developer includes the affected files in 8.0.x releases, but does not use them. This security bulletin intends to provide information on this vulnerability and recommend that EGL developers to not use these files. CVE(s): CVE-2014-8917 Affected product(s) and affected version(s): Rational Business Developer v8.0.x is affected. Refer to the following reference

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_dojo_toolkit_xss_vulnerability_affecting_rational_business_developer_v8_0?lang=en_us