{
  "document": {
    "aggregate_severity": {
      "namespace": "https://access.redhat.com/security/updates/classification/",
      "text": "Moderate"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright © Red Hat, Inc. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "summary",
        "text": "Updated Satellite 6.13 packages that fixes important security bugs and several regular bugs are now available for Red Hat Satellite.",
        "title": "Topic"
      },
      {
        "category": "general",
        "text": "Red Hat Satellite is a system management solution that allows organizations\nto configure and maintain their systems without the necessity to provide\npublic Internet access to their servers or other client systems. It\nperforms provisioning and configuration management of predefined standard\noperating environments.\n\nSecurity fix(es):\n\nforeman: Stored cross-site scripting in host tab(CVE-2023-0119)\n\nThis update fixes the following bugs:\n\n2190469 - CVE-2023-0119 foreman: Stored cross-site scripting in host tab [rhn_satellite_6.13] \n2190460 - Navigating to Capsules page on Satellite WebUI displays error \"Pulp plugin missing for synchronizable content types: . Repositories containing these content types will not be synced.\" for few seconds\n2190470\t- Host Detail button landed to old Host UI page\n2190472\t- wrong metadata if uploaded rpm have different name than name in rpm\n2190473\t- Getting \"NoMethodError undefined method `get_status' for nil:NilClass\" when publishing content view\n2190509\t- Incremental update of the content view takes long time to complete\n2190512\t- Error importing repositories with GPG key\n2190513\t- Satellite showing errata from module streams not installed on client as upgradable/installable when content is imported (not synced) \n2191657\t- Importing  Red Hat Repository Import  on Disconnected Red Hat Satellite taking huge time around 5 hours\n2191659\t- Misleading job status in the new host UI when running jobs in bulk\n2196242\t- Upgrade to Satellite 6.13 fails on db:seed step with error GraphQL::InvalidNameError: Names must match /^[_a-zA-Z][_a-zA-Z0-9]*$/ but 'RHEL OpenStack Platform' does not\n2208642\t- Support satellite-clone with Ansible running on Python 3.11 in RHEL 8.8\n\nUsers of Red Hat Satellite are advised to upgrade to these updated\npackages, which fix these bugs.",
        "title": "Details"
      },
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://access.redhat.com/security/team/contact/",
      "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.",
      "name": "Red Hat Product Security",
      "namespace": "https://www.redhat.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "https://access.redhat.com/errata/RHSA-2023:3387",
        "url": "https://access.redhat.com/errata/RHSA-2023:3387"
      },
      {
        "category": "external",
        "summary": "https://access.redhat.com/security/updates/classification/#moderate",
        "url": "https://access.redhat.com/security/updates/classification/#moderate"
      },
      {
        "category": "external",
        "summary": "2159104",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2159104"
      },
      {
        "category": "external",
        "summary": "2190460",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190460"
      },
      {
        "category": "external",
        "summary": "2190464",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190464"
      },
      {
        "category": "external",
        "summary": "2190470",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190470"
      },
      {
        "category": "external",
        "summary": "2190472",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190472"
      },
      {
        "category": "external",
        "summary": "2190473",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190473"
      },
      {
        "category": "external",
        "summary": "2190509",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190509"
      },
      {
        "category": "external",
        "summary": "2190512",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190512"
      },
      {
        "category": "external",
        "summary": "2190513",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2190513"
      },
      {
        "category": "external",
        "summary": "2191657",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2191657"
      },
      {
        "category": "external",
        "summary": "2191659",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2191659"
      },
      {
        "category": "external",
        "summary": "2196242",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2196242"
      },
      {
        "category": "external",
        "summary": "2208642",
        "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2208642"
      },
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_3387.json"
      }
    ],
    "title": "Red Hat Security Advisory: Satellite 6.13.1 Async Security Update",
    "tracking": {
      "current_release_date": "2026-06-25T11:02:24+00:00",
      "generator": {
        "date": "2026-06-25T11:02:24+00:00",
        "engine": {
          "name": "Red Hat SDEngine",
          "version": "5.1.0"
        }
      },
      "id": "RHSA-2023:3387",
      "initial_release_date": "2023-05-31T15:31:12+00:00",
      "revision_history": [
        {
          "date": "2023-05-31T15:31:12+00:00",
          "number": "1",
          "summary": "Initial version"
        },
        {
          "date": "2023-05-31T15:31:12+00:00",
          "number": "2",
          "summary": "Last updated version"
        },
        {
          "date": "2026-06-25T11:02:24+00:00",
          "number": "3",
          "summary": "Last generated version"
        }
      ],
      "status": "final",
      "version": "3"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Satellite 6.13 for RHEL 8",
                "product": {
                  "name": "Red Hat Satellite 6.13 for RHEL 8",
                  "product_id": "8Base-satellite-6.13",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:satellite:6.13::el8"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Satellite 6.13 for RHEL 8",
                "product": {
                  "name": "Red Hat Satellite 6.13 for RHEL 8",
                  "product_id": "8Base-satellite-6.13-capsule",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:satellite_capsule:6.13::el8"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Satellite 6.13 for RHEL 8",
                "product": {
                  "name": "Red Hat Satellite 6.13 for RHEL 8",
                  "product_id": "8Base-satellite-6.13-utils",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:satellite_utils:6.13::el8"
                  }
                }
              },
              {
                "category": "product_name",
                "name": "Red Hat Satellite 6.13 for RHEL 8",
                "product": {
                  "name": "Red Hat Satellite 6.13 for RHEL 8",
                  "product_id": "8Base-satellite-6.13-maintenance",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:satellite_maintenance:6.13::el8"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Satellite 6"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "foreman-0:3.5.1.17-1.el8sat.src",
                "product": {
                  "name": "foreman-0:3.5.1.17-1.el8sat.src",
                  "product_id": "foreman-0:3.5.1.17-1.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman@3.5.1.17-1.el8sat?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "python-pulp-rpm-0:3.18.14-1.el8pc.src",
                "product": {
                  "name": "python-pulp-rpm-0:3.18.14-1.el8pc.src",
                  "product_id": "python-pulp-rpm-0:3.18.14-1.el8pc.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/python-pulp-rpm@3.18.14-1.el8pc?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
                "product": {
                  "name": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
                  "product_id": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-foreman_remote_execution@8.3.0-1.el8sat?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-katello-0:4.7.0.25-1.el8sat.src",
                "product": {
                  "name": "rubygem-katello-0:4.7.0.25-1.el8sat.src",
                  "product_id": "rubygem-katello-0:4.7.0.25-1.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-katello@4.7.0.25-1.el8sat?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
                "product": {
                  "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
                  "product_id": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-smart_proxy_ansible@3.5.4-1.el8sat?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-dynflow-0:1.6.11-1.el8sat.src",
                "product": {
                  "name": "rubygem-dynflow-0:1.6.11-1.el8sat.src",
                  "product_id": "rubygem-dynflow-0:1.6.11-1.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-dynflow@1.6.11-1.el8sat?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-0:6.13.1-1.el8sat.src",
                "product": {
                  "name": "satellite-0:6.13.1-1.el8sat.src",
                  "product_id": "satellite-0:6.13.1-1.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite@6.13.1-1.el8sat?arch=src"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-clone-0:3.3.0-2.el8sat.src",
                "product": {
                  "name": "satellite-clone-0:3.3.0-2.el8sat.src",
                  "product_id": "satellite-clone-0:3.3.0-2.el8sat.src",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite-clone@3.3.0-2.el8sat?arch=src"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "src"
          },
          {
            "branches": [
              {
                "category": "product_version",
                "name": "foreman-debug-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-debug-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-debug-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-debug@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-cli-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-cli-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-cli-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-cli@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-dynflow-sidekiq@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-ec2@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-journald-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-journald-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-journald-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-journald@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-libvirt@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-openstack@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-ovirt@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-postgresql@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-service-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-service-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-service-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-service@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-telemetry@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
                "product": {
                  "name": "foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
                  "product_id": "foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/foreman-vmware@3.5.1.17-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
                "product": {
                  "name": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
                  "product_id": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/python39-pulp-rpm@3.18.14-1.el8pc?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
                "product": {
                  "name": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
                  "product_id": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-foreman_remote_execution@8.3.0-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
                "product": {
                  "name": "rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
                  "product_id": "rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-foreman_remote_execution-cockpit@8.3.0-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
                "product": {
                  "name": "rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
                  "product_id": "rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-katello@4.7.0.25-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
                "product": {
                  "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
                  "product_id": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-smart_proxy_ansible@3.5.4-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
                "product": {
                  "name": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
                  "product_id": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/rubygem-dynflow@1.6.11-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-capsule-0:6.13.1-1.el8sat.noarch",
                "product": {
                  "name": "satellite-capsule-0:6.13.1-1.el8sat.noarch",
                  "product_id": "satellite-capsule-0:6.13.1-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite-capsule@6.13.1-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-common-0:6.13.1-1.el8sat.noarch",
                "product": {
                  "name": "satellite-common-0:6.13.1-1.el8sat.noarch",
                  "product_id": "satellite-common-0:6.13.1-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite-common@6.13.1-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-0:6.13.1-1.el8sat.noarch",
                "product": {
                  "name": "satellite-0:6.13.1-1.el8sat.noarch",
                  "product_id": "satellite-0:6.13.1-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite@6.13.1-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-cli-0:6.13.1-1.el8sat.noarch",
                "product": {
                  "name": "satellite-cli-0:6.13.1-1.el8sat.noarch",
                  "product_id": "satellite-cli-0:6.13.1-1.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite-cli@6.13.1-1.el8sat?arch=noarch"
                  }
                }
              },
              {
                "category": "product_version",
                "name": "satellite-clone-0:3.3.0-2.el8sat.noarch",
                "product": {
                  "name": "satellite-clone-0:3.3.0-2.el8sat.noarch",
                  "product_id": "satellite-clone-0:3.3.0-2.el8sat.noarch",
                  "product_identification_helper": {
                    "purl": "pkg:rpm/redhat/satellite-clone@3.3.0-2.el8sat?arch=noarch"
                  }
                }
              }
            ],
            "category": "architecture",
            "name": "noarch"
          }
        ],
        "category": "vendor",
        "name": "Red Hat"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-0:3.5.1.17-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:foreman-0:3.5.1.17-1.el8sat.src"
        },
        "product_reference": "foreman-0:3.5.1.17-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-debug-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:foreman-debug-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-debug-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "python-pulp-rpm-0:3.18.14-1.el8pc.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:python-pulp-rpm-0:3.18.14-1.el8pc.src"
        },
        "product_reference": "python-pulp-rpm-0:3.18.14-1.el8pc.src",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch"
        },
        "product_reference": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.noarch"
        },
        "product_reference": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-dynflow-0:1.6.11-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.src"
        },
        "product_reference": "rubygem-dynflow-0:1.6.11-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch"
        },
        "product_reference": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src"
        },
        "product_reference": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-0:6.13.1-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:satellite-0:6.13.1-1.el8sat.src"
        },
        "product_reference": "satellite-0:6.13.1-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-capsule-0:6.13.1-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:satellite-capsule-0:6.13.1-1.el8sat.noarch"
        },
        "product_reference": "satellite-capsule-0:6.13.1-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-common-0:6.13.1-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-capsule:satellite-common-0:6.13.1-1.el8sat.noarch"
        },
        "product_reference": "satellite-common-0:6.13.1-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-capsule"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-clone-0:3.3.0-2.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.noarch"
        },
        "product_reference": "satellite-clone-0:3.3.0-2.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-maintenance"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-clone-0:3.3.0-2.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.src"
        },
        "product_reference": "satellite-clone-0:3.3.0-2.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-maintenance"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-0:3.5.1.17-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-utils:foreman-0:3.5.1.17-1.el8sat.src"
        },
        "product_reference": "foreman-0:3.5.1.17-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-utils"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-cli-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-utils:foreman-cli-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-cli-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-utils"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-0:6.13.1-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-utils:satellite-0:6.13.1-1.el8sat.src"
        },
        "product_reference": "satellite-0:6.13.1-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13-utils"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-cli-0:6.13.1-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13-utils:satellite-cli-0:6.13.1-1.el8sat.noarch"
        },
        "product_reference": "satellite-cli-0:6.13.1-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13-utils"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-0:3.5.1.17-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.src"
        },
        "product_reference": "foreman-0:3.5.1.17-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-cli-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-cli-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-cli-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-debug-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-debug-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-debug-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-ec2-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-ec2-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-journald-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-journald-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-journald-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-libvirt-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-libvirt-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-openstack-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-openstack-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-ovirt-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-ovirt-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-postgresql-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-postgresql-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-service-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-service-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-service-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-telemetry-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-telemetry-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "foreman-vmware-0:3.5.1.17-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:foreman-vmware-0:3.5.1.17-1.el8sat.noarch"
        },
        "product_reference": "foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "python-pulp-rpm-0:3.18.14-1.el8pc.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:python-pulp-rpm-0:3.18.14-1.el8pc.src"
        },
        "product_reference": "python-pulp-rpm-0:3.18.14-1.el8pc.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch"
        },
        "product_reference": "python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.noarch"
        },
        "product_reference": "rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-dynflow-0:1.6.11-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.src"
        },
        "product_reference": "rubygem-dynflow-0:1.6.11-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch"
        },
        "product_reference": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src"
        },
        "product_reference": "rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch"
        },
        "product_reference": "rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-katello-0:4.7.0.25-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.noarch"
        },
        "product_reference": "rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-katello-0:4.7.0.25-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.src"
        },
        "product_reference": "rubygem-katello-0:4.7.0.25-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch"
        },
        "product_reference": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src"
        },
        "product_reference": "rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-0:6.13.1-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.noarch"
        },
        "product_reference": "satellite-0:6.13.1-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-0:6.13.1-1.el8sat.src as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.src"
        },
        "product_reference": "satellite-0:6.13.1-1.el8sat.src",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-cli-0:6.13.1-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:satellite-cli-0:6.13.1-1.el8sat.noarch"
        },
        "product_reference": "satellite-cli-0:6.13.1-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "satellite-common-0:6.13.1-1.el8sat.noarch as a component of Red Hat Satellite 6.13 for RHEL 8",
          "product_id": "8Base-satellite-6.13:satellite-common-0:6.13.1-1.el8sat.noarch"
        },
        "product_reference": "satellite-common-0:6.13.1-1.el8sat.noarch",
        "relates_to_product_reference": "8Base-satellite-6.13"
      }
    ]
  },
  "vulnerabilities": [
    {
      "acknowledgments": [
        {
          "names": [
            "Dinko Dimitrov"
          ],
          "organization": "Onsec.io"
        }
      ],
      "cve": "CVE-2023-0119",
      "cwe": {
        "id": "CWE-79",
        "name": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')"
      },
      "discovery_date": "2022-12-16T00:00:00+00:00",
      "flags": [
        {
          "label": "vulnerable_code_not_present",
          "product_ids": [
            "8Base-satellite-6.13-capsule:foreman-debug-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:python-pulp-rpm-0:3.18.14-1.el8pc.src",
            "8Base-satellite-6.13-capsule:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
            "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.src",
            "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
            "8Base-satellite-6.13-capsule:satellite-0:6.13.1-1.el8sat.src",
            "8Base-satellite-6.13-capsule:satellite-capsule-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:satellite-common-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.noarch",
            "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.src",
            "8Base-satellite-6.13-utils:foreman-cli-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13-utils:satellite-0:6.13.1-1.el8sat.src",
            "8Base-satellite-6.13-utils:satellite-cli-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-cli-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-debug-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-journald-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-service-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:python-pulp-rpm-0:3.18.14-1.el8pc.src",
            "8Base-satellite-6.13:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
            "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.src",
            "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
            "8Base-satellite-6.13:rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.src",
            "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
            "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.src",
            "8Base-satellite-6.13:satellite-cli-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13:satellite-common-0:6.13.1-1.el8sat.noarch"
          ]
        }
      ],
      "ids": [
        {
          "system_name": "Red Hat Bugzilla ID",
          "text": "2159104"
        }
      ],
      "notes": [
        {
          "category": "description",
          "text": "A stored Cross-site scripting vulnerability was found in foreman. The Comment section in the Hosts tab has incorrect filtering of user input data. As a result of the attack, an attacker with an existing account on the system can steal another user's session, make requests on behalf of the user, and obtain user credentials.",
          "title": "Vulnerability description"
        },
        {
          "category": "summary",
          "text": "Foreman: Stored cross-site scripting in host tab",
          "title": "Vulnerability summary"
        },
        {
          "category": "other",
          "text": "This issue does not affect Satellite versions 6.12 and below.",
          "title": "Statement"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "fixed": [
          "8Base-satellite-6.13-capsule:foreman-0:3.5.1.17-1.el8sat.src",
          "8Base-satellite-6.13-utils:foreman-0:3.5.1.17-1.el8sat.src",
          "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.src"
        ],
        "known_not_affected": [
          "8Base-satellite-6.13-capsule:foreman-debug-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13-capsule:python-pulp-rpm-0:3.18.14-1.el8pc.src",
          "8Base-satellite-6.13-capsule:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
          "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
          "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.src",
          "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
          "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
          "8Base-satellite-6.13-capsule:satellite-0:6.13.1-1.el8sat.src",
          "8Base-satellite-6.13-capsule:satellite-capsule-0:6.13.1-1.el8sat.noarch",
          "8Base-satellite-6.13-capsule:satellite-common-0:6.13.1-1.el8sat.noarch",
          "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.noarch",
          "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.src",
          "8Base-satellite-6.13-utils:foreman-cli-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13-utils:satellite-0:6.13.1-1.el8sat.src",
          "8Base-satellite-6.13-utils:satellite-cli-0:6.13.1-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-cli-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-debug-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-journald-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-service-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
          "8Base-satellite-6.13:python-pulp-rpm-0:3.18.14-1.el8pc.src",
          "8Base-satellite-6.13:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
          "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
          "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.src",
          "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
          "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
          "8Base-satellite-6.13:rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
          "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
          "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.src",
          "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
          "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
          "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.noarch",
          "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.src",
          "8Base-satellite-6.13:satellite-cli-0:6.13.1-1.el8sat.noarch",
          "8Base-satellite-6.13:satellite-common-0:6.13.1-1.el8sat.noarch"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://access.redhat.com/security/cve/CVE-2023-0119"
        },
        {
          "category": "external",
          "summary": "RHBZ#2159104",
          "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2159104"
        },
        {
          "category": "external",
          "summary": "https://www.cve.org/CVERecord?id=CVE-2023-0119",
          "url": "https://www.cve.org/CVERecord?id=CVE-2023-0119"
        },
        {
          "category": "external",
          "summary": "https://nvd.nist.gov/vuln/detail/CVE-2023-0119",
          "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-0119"
        },
        {
          "category": "external",
          "summary": "https://projects.theforeman.org/issues/35977",
          "url": "https://projects.theforeman.org/issues/35977"
        }
      ],
      "release_date": "2023-03-12T00:00:00+00:00",
      "remediations": [
        {
          "category": "vendor_fix",
          "date": "2023-05-31T15:31:12+00:00",
          "details": "Before applying this update, make sure all previously released errata\nrelevant to your system have been applied.\n\nFor details on how to apply this update, refer to:\n\nhttps://access.redhat.com/articles/11258",
          "product_ids": [
            "8Base-satellite-6.13-capsule:foreman-0:3.5.1.17-1.el8sat.src",
            "8Base-satellite-6.13-utils:foreman-0:3.5.1.17-1.el8sat.src",
            "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.src"
          ],
          "restart_required": {
            "category": "none"
          },
          "url": "https://access.redhat.com/errata/RHSA-2023:3387"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 5.4,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "LOW",
            "integrityImpact": "LOW",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N",
            "version": "3.1"
          },
          "products": [
            "8Base-satellite-6.13-capsule:foreman-0:3.5.1.17-1.el8sat.src",
            "8Base-satellite-6.13-capsule:foreman-debug-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:python-pulp-rpm-0:3.18.14-1.el8pc.src",
            "8Base-satellite-6.13-capsule:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
            "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:rubygem-dynflow-0:1.6.11-1.el8sat.src",
            "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
            "8Base-satellite-6.13-capsule:satellite-0:6.13.1-1.el8sat.src",
            "8Base-satellite-6.13-capsule:satellite-capsule-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13-capsule:satellite-common-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.noarch",
            "8Base-satellite-6.13-maintenance:satellite-clone-0:3.3.0-2.el8sat.src",
            "8Base-satellite-6.13-utils:foreman-0:3.5.1.17-1.el8sat.src",
            "8Base-satellite-6.13-utils:foreman-cli-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13-utils:satellite-0:6.13.1-1.el8sat.src",
            "8Base-satellite-6.13-utils:satellite-cli-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-0:3.5.1.17-1.el8sat.src",
            "8Base-satellite-6.13:foreman-cli-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-debug-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-dynflow-sidekiq-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-ec2-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-journald-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-libvirt-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-openstack-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-ovirt-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-postgresql-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-service-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-telemetry-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:foreman-vmware-0:3.5.1.17-1.el8sat.noarch",
            "8Base-satellite-6.13:python-pulp-rpm-0:3.18.14-1.el8pc.src",
            "8Base-satellite-6.13:python39-pulp-rpm-0:3.18.14-1.el8pc.noarch",
            "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-dynflow-0:1.6.11-1.el8sat.src",
            "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-foreman_remote_execution-0:8.3.0-1.el8sat.src",
            "8Base-satellite-6.13:rubygem-foreman_remote_execution-cockpit-0:8.3.0-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-katello-0:4.7.0.25-1.el8sat.src",
            "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.noarch",
            "8Base-satellite-6.13:rubygem-smart_proxy_ansible-0:3.5.4-1.el8sat.src",
            "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13:satellite-0:6.13.1-1.el8sat.src",
            "8Base-satellite-6.13:satellite-cli-0:6.13.1-1.el8sat.noarch",
            "8Base-satellite-6.13:satellite-common-0:6.13.1-1.el8sat.noarch"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Moderate"
        }
      ],
      "title": "Foreman: Stored cross-site scripting in host tab"
    }
  ]
}