Vulnerability Bulletins

IBM Security Bulletin: Cross-site scripting vulnerability in IBM WebSphere Application Server Liberty Profile (CVE-2016-3042)

   
Affected software IBM
 
There is a potential cross-site scripting vulnerability in the WebSphere Application Server Liberty OpenID Connect clients.CVE(s): CVE-2016-3042Affected product(s) and affected version(s):This vulnerability affects IBM WebSphere Application Server Liberty. Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21986716X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/114638

More info:

https://www.ibm.com/blogs/psirt/ibm-security-bulletin-cross-site-scripting-vulnerability-in-ibm-websphere-application-server-liberty-profile-cve-2016-3042/