Skip to main content

Vendor/product archive

redhat / jbpm CVEs

Beta · best-effort

4 CVEs tagged to redhat / jbpm0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2013-6465

Published Dec 19, 2017

Multiple cross-site scripting (XSS) vulnerabilities in JBPM KIE Workbench 6.0.x allow remote authenticated users to inject arbitrary web script or HTML via vectors related to task…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8125

Published Apr 21, 2015

XML external entity (XXE) vulnerability in Drools and jBPM before 6.2.0 allows remote attackers to read arbitrary files or possibly have other unspecified impact via a crafted BPM…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1