CVE-2017-2661: Clusterlabs Pcs
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
ClusterLabs pcs before version 0.9.157 is vulnerable to a cross-site scripting vulnerability due to improper validation of Node name field when creating new cluster or adding existing cluster.
Affected products
- Clusterlabs Pcs: before 0.9.157 (fixed in 0.9.157)
Published 2018-03-12. Last modified 2026-06-17.