Multiple cross-site scripting (XSS) vulnerabilities in the commenting system in Review Board prior to 1.5.7 and 1.6.x prior to 1.6.3 allow remote malicious users to inject arbitrary web script or HTML via vectors involving the (1) diff viewer or (2) screenshot component.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
reviewboard review board |
||
reviewboard review board 1.5.5 |
||
reviewboard review board 1.5 |
||
reviewboard review board 1.0.9 |
||
reviewboard review board 1.0.8 |
||
reviewboard review board 1.0.1 |
||
reviewboard review board 1.0 |
||
reviewboard review board 1.5.4 |
||
reviewboard review board 1.5.3 |
||
reviewboard review board 1.1 |
||
reviewboard review board 1.0.7 |
||
reviewboard review board 1.0.6 |
||
reviewboard review board 1.0.5.1 |
||
reviewboard review board 1.6.2 |
||
reviewboard review board 1.5.2 |
||
reviewboard review board 1.5.1 |
||
reviewboard review board 1.6 |
||
reviewboard review board 1.0.5 |
||
reviewboard review board 1.0.4 |
||
reviewboard review board 1.6.1 |
||
reviewboard review board 1.0.3 |
||
reviewboard review board 1.0.2 |