MEDIUM6.8
GHSA-8m65-qq6g-43rr
Cockpit Cross-site Scripting vulnerability
Quick fix
GHSA-8m65-qq6g-43rr — cockpit-hq/cockpit: upgrade to the fixed version with the command below.
composer require cockpit-hq/cockpit:^2.6.3Details
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/cockpit-hq/cockpit
Introduced in:
0Fixed in: 2.6.3Fix
composer require cockpit-hq/cockpit:^2.6.3