CVE-2017-3165 — In Apache Brooklyn before 0.10.0, the REST server is vulnerable to cross-site scripting where one authenticated user can cause scripts to run in the browser of another user authorized to access the fi — CVE Database · The Intelligence Room