![]() | ![]() | ![]() | ![]() | ![]() |
Severity: Medium
Description: The text object in SAS Visual Analytics contains a cross-site scripting (XSS) vulnerability that enables JavaScript to be embedded in a certain property.
Potential Impact: Users might unknowingly execute malicious code.
Click the Hot Fix tab in this note for a link to instructions about accessing and applying the software update.
Product Family | Product | System | Product Release | SAS Release | ||
Reported | Fixed* | Reported | Fixed* | |||
SAS System | SAS Visual Analytics (on SAS Viya) | Cloud Foundry | 8.5 | 2020.1.5 | Viya | Viya |
Linux for x64 | 8.5 | 2020.1.5 | Viya | Viya | ||
Microsoft® Windows® for x64 | 8.5 | 2020.1.5 | Viya | Viya |