Cross-site scripting (XSS) vulnerability in the MailForm plugin prior to 1.20 for Movable Type allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
h-fj mailform_plugin |
||
h-fj mailform_plugin 1.10 |
||
h-fj mailform_plugin 1.00 |