A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs, aka 'Microsoft Active Directory Federation Services Cross-Site Scripting Vulnerability'.
| Software | From | Fixed in |
|---|---|---|
| microsoft / windows_10 | 1809 | 1809.x |
| microsoft / windows_server_2016 | 1903 | 1903.x |
| microsoft / windows_10 | 1903 | 1903.x |
| microsoft / windows_server_2016 | 1909 | 1909.x |
| microsoft / windows_10 | 1909 | 1909.x |