Security Advisory

CVE-2021-42751

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-08-12 16:52:47
Last updated 2024-08-04 03:38:50
Assigner mitre
State PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in Rule Engine in ThingsBoard 3.3.1 allows remote attackers (with administrative access) to inject arbitrary JavaScript within the description of a rule node.