Vulnerabilities > Redhat > Process Automation Manager > 7.5.1

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-2458 XXE vulnerability in Redhat Process Automation Manager 7.5.1
XML external entity injection(XXE) is a vulnerability that allows an attacker to interfere with an application's processing of XML data.
network
low complexity
redhat CWE-611
8.2
2020-03-05 CVE-2019-14886 Cleartext Storage of Sensitive Information vulnerability in Redhat Decision Manager and Process Automation Manager
A vulnerability was found in business-central, as shipped in rhdm-7.5.1 and rhpam-7.5.1, where encoded passwords are stored in errai_security_context.
network
low complexity
redhat CWE-312
6.5