Cross-site scripting (XSS) vulnerability in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x before 7.5.0.4 and 8.x through 8.0.0.2 allows remote authenticated users to inject arbitrary web script or HTML via vectors involving widgets.
https://exchange.xforce.ibmcloud.com/vulnerabilities/89230
http://www.securitytracker.com/id/1029498
http://www-01.ibm.com/support/docview.wss?uid=swg21659623