laptop and a wrench

Bug

Stored Cross-Site Scripting (XSS) vulnerability in ArcGIS Enterprise.

Last Published: May 30, 2022 Portal for ArcGIS
Bug ID Number BUG-000149597
SubmittedMay 27, 2022
Last ModifiedFebruary 15, 2023
Applies toPortal for ArcGIS
Version found10.7.1
Operating SystemN/A
Operating System VersionN/A
Version Fixed11.0
StatusFixed

Workaround

The ArcGIS Enterprise 10.9.1 on Kubernetes Security and Required Update is now available. Please see the Release Notes for full details:

https://enterprise-k8s.arcgis.com/en/latest/introduction/release-notes.htm

Steps to Reproduce

Bug ID: BUG-000149597

Software:

  • Portal for ArcGIS

Get help from ArcGIS experts

Contact technical support

Download the Esri Support App

Go to download options

Discover more on this topic