CVE-2014-3650: Red Hat JBoss Aerogear

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Multiple persistent cross-site scripting (XSS) flaws were found in the way Aerogear handled certain user-supplied content. A remote attacker could use these flaws to compromise the application with specially crafted input.

Affected products

  • Red Hat JBoss Aerogear: version 1.0.0 only

Published 2022-07-01. Last modified 2026-06-17.