CVE-2017-9394: Ca Identity Governance

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

A stored cross-site scripting vulnerability in CA Identity Governance 12.6 allows remote authenticated attackers to display HTML or execute script in the context of another user.

Affected products

  • Ca Identity Governance: version 12.6.0 only

Published 2017-11-14. Last modified 2026-06-17.