IBM Security Bulletin: Vulnerability in Dojo Toolkit affects IBM MQ Light (CVE-2015-5654)

Dojo Toolkit is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability in a specially-crafted URL to execute script in a victim's web browser within the security context...

from IBM Product Security Incident Response Team http://ift.tt/1UXbxLI