CVE-2019-6804: Pagerduty Rundeck

Medium severity, CVSS 6.1. EPSS: 5.3% chance of exploitation in the next 30 days.

An XSS issue was discovered on the Job Edit page in Rundeck Community Edition before 3.0.13, related to assets/javascripts/workflowStepEditorKO.js and views/execution/_wfitemEdit.gsp.

Affected products

  • Pagerduty Rundeck: before 3.0.13 (fixed in 3.0.13)

Published 2019-01-25. Last modified 2026-06-17.