CVE-2017-15569
—CVSS 3.0
6.1 medium
EPSS
<1%p59
Published
()
Modified
Description
In Redmine before 3.2.8, 3.3.x before 3.3.5, and 3.4.x before 3.4.3, XSS exists in app/helpers/queries_helper.rb via a multi-value field with a crafted value that is mishandled during rendering of an issue list.
In the news0 stories
No ingested article mentions this CVE yet.