Lucene search

K

Devel Module Security Vulnerabilities

cve
cve

CVE-2010-3022

Cross-site scripting (XSS) vulnerability in the Performance logging module in the Devel module 5.x before 5.x-1.3 and 6.x before 6.x-1.21 for Drupal allows remote authenticated users, with add url aliases and report access permissions, to inject arbitrary web script or HTML via crafted node paths.....

5.5AI Score

0.001EPSS

2010-08-16 08:00 PM
25
cve
cve

CVE-2009-3435

Cross-site scripting (XSS) vulnerability in the variable editor in the Devel module 5.x before 5.x-1.2 and 6.x before 6.x-1.18, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a variable...

5.7AI Score

0.003EPSS

2009-09-28 10:30 PM
24