Опубликовано: 01 апр. 2025
Источник: github
Github: Прошло ревью
CVSS4: 1.3
CVSS3: 6.1
Описание
Drupal SpamSpan Cross-Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal SpamSpan filter allows Cross-Site Scripting (XSS). This issue affects SpamSpan filter: from 0.0.0 before 3.2.1.
Пакеты
Наименование
drupal/spamspan
composer
Затронутые версииВерсия исправления
< 3.2.1
3.2.1
Связанные уязвимости
CVSS3: 6.1
nvd
10 месяцев назад
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal SpamSpan filter allows Cross-Site Scripting (XSS).This issue affects SpamSpan filter: from 0.0.0 before 3.2.1.