laptop and a wrench

Bug

There is a reflected cross-site scripting (XSS) vulnerability in Portal for ArcGIS.

Zuletzt veröffentlicht: February 7, 2023 ArcGIS Online
Bug-ID-Nummer BUG-000154236
EingereichtDecember 6, 2022
Zuletzt geändertJuly 18, 2023
Gilt fürArcGIS Online
Gefunden in VersionN/A
Server-PlattformN/A
Client-PlattformN/A
Version FixedPlanned Release Date: Q1 2023
StatusFixed

Zusätzliche Informationen

The Portal for ArcGIS Security 2023 Update 1 Patch is now live on the support site. This is a four-version patch for 10.7.1, 10.8.1, 10.9.1, and 11.0 which addresses both security and non-security issues. Refer to: https://support.esri.com/en-us/patches-updates/2023/portal-for-arcgis-security-2023-update-1-patch-8095. Refer to the 'Issues addressed with this patch' section of the patch download page for details on which versions are affected and resolved for each defect.

Workaround

The Portal for ArcGIS Security 2023 Update 1 Patch is now live on the support site. Refer to: https://support.esri.com/en-us/patches-updates/2023/portal-for-arcgis-security-2023-update-1-patch-8095.

Schritte zur Reproduzierung

Bug-ID: BUG-000154236

Software:

  • ArcGIS Online

Hilfe von ArcGIS-Expert*innen erhalten

Technischen Support kontaktieren

Die Esri Support-App herunterladen

Zu den Download-Optionen

Weitere Informationen zu diesem Thema erkunden