IBM CICS TX Advanced 10.1, 11.1, and Standard 11.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
| Software | From | Fixed in |
|---|---|---|
| ibm / cics_tx | 10.1 | 10.1.x |
| ibm / cics_tx | 11.1.0.0 | 11.1.0.0.x |