CVE-2015-8699: Broadcom Release Automation

Medium severity, CVSS 6.1. EPSS: 1.8% chance of exploitation in the next 30 days.

Multiple cross-site scripting (XSS) vulnerabilities in CA Release Automation (formerly LISA Release Automation) 5.0.2 before 5.0.2-227, 5.5.1 before 5.5.1-1616, 5.5.2 before 5.5.2-434, and 6.1.0 before 6.1.0-1026 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected products

  • Broadcom Release Automation: from 5.0.2, before 5.0.2-227 (fixed in 5.0.2-227); from 5.5.1, before 5.5.1-1616 (fixed in 5.5.1-1616); from 5.5.2, before 5.5.2-434 (fixed in 5.5.2-434); from 6.1.0, before 6.1.0-1026 (fixed in 6.1.0-1026)

Published 2016-06-29. Last modified 2026-06-17.