It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. External Reference: https://www.mozilla.org/en-US/security/advisories/mfsa2022-02/#CVE-2021-4140
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Extended Update Support Via RHSA-2022:0123 https://access.redhat.com/errata/RHSA-2022:0123
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions Via RHSA-2022:0125 https://access.redhat.com/errata/RHSA-2022:0125
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2022:0130 https://access.redhat.com/errata/RHSA-2022:0130
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Extended Update Support Via RHSA-2022:0126 https://access.redhat.com/errata/RHSA-2022:0126
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions Via RHSA-2022:0131 https://access.redhat.com/errata/RHSA-2022:0131
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Extended Update Support Via RHSA-2022:0132 https://access.redhat.com/errata/RHSA-2022:0132
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Extended Update Support Via RHSA-2022:0128 https://access.redhat.com/errata/RHSA-2022:0128
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2022:0129 https://access.redhat.com/errata/RHSA-2022:0129
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2022:0124 https://access.redhat.com/errata/RHSA-2022:0124
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2022:0127 https://access.redhat.com/errata/RHSA-2022:0127
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2021-4140