Two cross-site scripting issues in several editions of vRealize cloud software patched. The flaws could be exploited in stored XSS attacks and could result in the user’s workstation being compromised. Linux users running affected versions should update to the latest version of the software. The issues do not affect v Realize Automation 7.x on Linux and 5. x on Windows, and vRealizing Business 7.X on Linux (vRealize Business Standard) The patches would be the third update for 2016.”]
Source: https://www.csoonline.com/article/3045441/vmware-fixes-xss-flaws-in-vrealize-for-linux.html