ArcGIS Enterprise

Portal for ArcGIS 10.8.1 Enterprise Sites Patch 2 available.

A moderate priority Cross Site Scripting (XSS) vulnerability has been discovered in ArcGIS Enterprise Sites Builder version 10.8.1.

[#BUG-000135364 XSS in ArcGIS Enterprise Sites (iframe card) ]

This is a moderate priority issue with a CVSSv3: 5.4.

Esri recommends all ArcGIS Enterprise administrators install this patch by using the ArcGIS Enterprise “Patch Notification” tool or by downloading the appropriate patch for your ArcGIS Enterprise site from the Portal for ArcGIS 10.8.1 Enterprise Sites Patch 2 patch page.
Be sure to subscribe to the RSS feed on the ArcGIS Trust Center for timely notifications regarding trends and issues related to security issues that impact the ArcGIS Platform.


Check for and install software patches and updates

How To: Schedule Automatic Updates for ArcGIS Enterprise

Notify of
Inline Feedbacks
View all comments

Next Article

Basemap Releases Include Over 180 New and Updated Communities

Read this article