TEMP-1121233-A03BB4

NameTEMP-1121233-A03BB4
DescriptionStored XSS Vulnerability Found in Party Field Leading to Arbitrary JavaScript Execution
SourceAutomatically generated temporary name. Not for external reference.
Debian Bugs1121233

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
tryton-sao (PTS)bookworm6.0.28+ds1-2vulnerable
bookworm (security)6.0.28+ds1-2+deb12u1vulnerable
trixie (security), trixie7.0.28+ds1-1+deb13u1vulnerable
forky, sid7.0.38+ds1-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
tryton-saosource(unstable)7.0.40+ds1-11121233

Notes

https://discuss.tryton.org/t/security-release-for-issue-14363/8951
https://foss.heptapod.net/tryton/tryton/-/issues/14363

Search for package or bug name: Reporting problems