laptop and a wrench

Bug

There is a stored cross-site scripting (XSS) vulnerability in ArcGIS API for JavaScript.

Zuletzt veröffentlicht: October 18, 2021 ArcGIS API for JavaScript
Bug-ID-Nummer BUG-000133257
EingereichtAugust 21, 2020
Zuletzt geändertMay 31, 2023
Gilt fürArcGIS API for JavaScript
Gefunden in Version4.16
Server-PlattformWindows OS
Client-Plattform10.0
Version Fixed3.37
StatusFixed

Workaround

The Portal for ArcGIS Security 2022 Update 1 Patch is now live on the support site. The URL is: https://support.esri.com/en/download/7948. This is a 3 version patch for 10.7.1, 10.8.1 and 10.9.1. Refer to the Issues Addressed section of the patch download page for details on which versions were affected and resolved for this defect.

Schritte zur Reproduzierung

Bug-ID: BUG-000133257

Software:

  • ArcGIS API for JavaScript

Hilfe von ArcGIS-Expert*innen erhalten

Technischen Support kontaktieren

Die Esri Support-App herunterladen

Zu den Download-Optionen

Weitere Informationen zu diesem Thema erkunden