Security Advisory

CVE-2016-10744

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-03-27 03:54:26
Last updated 2024-08-06 03:30:20
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In Select2 through 4.0.5, as used in Snipe-IT and other products, rich selectlists allow XSS. This affects use cases with Ajax remote data loading when HTML templates are used to display listbox data.