Lucene search

K
osvGoogleOSV:GHSA-VHG8-X858-7WQ6
HistoryMay 17, 2022 - 3:47 a.m.

Drupal Cross-site scripting (XSS) vulnerability

2022-05-1703:47:57
Google
osv.dev
7
drupal
cross-site scripting
vulnerability
remote attackers
http exception
software

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

49.0%

Cross-site scripting (XSS) vulnerability in Drupal 8.x before 8.1.10 allows remote attackers to inject arbitrary web script or HTML via vectors involving an HTTP exception.

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

49.0%