An issue was discovered in WSO2 Dashboard Server 2.0.0. It is possible to inject a JavaScript payload that will be stored in the database and then displayed and executed on the same page, aka XSS.Referenceshttps://www.excellium-services.com/cert-xlm-advisoryhttps://wso2.com/security-patch-releases/dashboard-server