Loading
A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.
Use CWE-79, Redhat vendor hub and Enterprise Linux product page to widen CVE-2019-10146 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-28369, CVE-2026-28368 and CVE-2026-35091 for nearby disclosures in the same product family.