Dashboards and progressiveProfileForms in ForgeRock Identity Manager before 7.0.0 are vulnerable to stored XSS. The vulnerability affects versions 6.5.0.4, 6.0.0.6.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-17465
Reference (s):
- https://gist.github.com/gajendkmr/261f45e06c41656131a651c920c7f406
- https://www.nccgroup.com/us/our-research/?research=Technical+advisories

