LIN1021-6154 : Security Advisory - go - CVE-2023-3978
Created: Jul 28, 2023
Updated: Feb 6, 2025
Resolved Date: Feb 6, 2025
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace
Description
Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be. This could lead to an XSS attack.
https://nvd.nist.gov/vuln/detail/CVE-2023-3978