Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 6.x-3.x prior to 6.x-3.8 for Drupal allows remote authenticated users with administer taxonomy permissions to inject arbitrary web script or HTML via unspecified vectors related to "the vocabulary's help text."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wim_leers hierarchical_select 6.x-3.1 |
||
wim_leers hierarchical_select 6.x-3.0 |
||
wim_leers hierarchical_select 6.x-3.2 |
||
wim_leers hierarchical_select 6.x-3.3 |
||
wim_leers hierarchical_select 6.x-3.x |
||
wim_leers hierarchical_select 6.x-3.6 |
||
wim_leers hierarchical_select 6.x-3.7 |
||
wim_leers hierarchical_select 6.x-3.4 |
||
wim_leers hierarchical_select 6.x-3.5 |
||
wimleers hierarchical_select 6.x-3.x |
||
wimleers hierarchical_select 6.x-3.1 |
||
wimleers hierarchical_select 6.x-3.0 |