CVE-2014-3649: Red Hat JBoss Aerogear

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

JBoss AeroGear has reflected XSS via the password field

Affected products

  • Red Hat JBoss Aerogear: up to and including 2014-09-19

Published 2019-11-04. Last modified 2026-06-17.