IBM Check out the new support experience beta
Cross Site Scripting vulnerabilities were found in IBM WebSphere Commerce store pages.
CVE(s): CVE-2016-2862
Affected product(s) and affected version(s):
WebSphere Commerce version 8.0.0.0 – 8.0.0.4
WebSphere Commerce versions 7.0.0.1 – 7.0.0.9
WebSphere Commerce versions 6.0.0.0 – 6.0.0.11
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/293cnFm
X-Force Database: http://ift.tt/292tlY0
from IBM Product Security Incident Response Team http://ift.tt/28ZZg6w