VDB
Sign up
MEDIUM6.8

GHSA-8m65-qq6g-43rr

Cockpit Cross-site Scripting vulnerability

Quick fix

GHSA-8m65-qq6g-43rr — cockpit-hq/cockpit: upgrade to the fixed version with the command below.

composer require cockpit-hq/cockpit:^2.6.3

Details

Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/cockpit-hq/cockpit
Introduced in: 0Fixed in: 2.6.3
Fixcomposer require cockpit-hq/cockpit:^2.6.3

References