CVE-2017-1002152: Red Hat Bodhi

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

Bodhi 2.9.0 and lower is vulnerable to cross-site scripting resulting in code injection caused by incorrect validation of bug titles.

Affected products

  • Red Hat Bodhi: up to and including 2.9.0

Published 2019-01-10. Last modified 2026-06-17.