CVE 2018-14380
In Graylog before 2.4.6, XSS was possible in typeahead components, related to components/
See the
CVE page on Mitre.org
for more details.
In Graylog before 2.4.6, XSS was possible in typeahead components, related to components/