CyberRota Analysis
AI-GeneratedA vulnerability exists that allows users with Editor permissions to create a dashboard containing a malicious field name in the TableNG panel, leading to stored cross-site scripting (XSS) attacks. This can result in the execution of arbitrary scripts in the browsers of any users who view the compromised dashboard, potentially exposing sensitive information or facilitating further attacks. Organizations utilizing this dashboard feature should prioritize remediation to protect against potential exploitation.
Original NVD Description
A user with Editor permissions can craft a dashboard whose table (TableNG) panel contains a malicious field name that executes as a script in the browser of any user who views the dashboard (stored cross-site scripting).
Related CVEs
Other vulnerabilities affecting the same vendor(s)