A cross-site scripting (XSS) flaw was found in how the failed action entry is processed in Red Hat Satellite before version 5.8.0. A user able to specify a failed action could exploit this flaw to perform XSS attacks against other Satellite users.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-7514.json"
[ { "events": [ { "introduced": "0" }, { "fixed": "5.8.0" } ] } ]