SAP Knowledge Base Article - Preview

3681294 - CVE-2024-38357 TinyMCE Vulnerabilty (SAPUI5)

Symptom

A cross-site scripting (XSS) vulnerability was discovered in TinyMCE’s content parsing code.


Read more...

Environment

  • SAP BusinessObjects Business Intelligence Platform 4.3/2025
  • All supported OS (Windows/Unix)

Product

SAP BusinessObjects Business Intelligence platform 2025 ; SAP BusinessObjects Business Intelligence platform 4.3

Keywords

BI, BIP, BI2025, 2025, BI4.3, 4.3, CVE, CVE-2024-38357, 6.8.4, TinyMCE, Vulnerabilty, SAPUI5 , KBA , BI-BIP-SEC , Security Vulnerabilities in SAP BusinessObjects , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.