LOW
Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 6.x-3.x before 6.x-3.8 for Drupal allows remote authenticated users with administer taxonomy permissions to inject arbitrary web script or HTML via unspecified vectors related to "the vocabulary's help text."
Published Sep 19, 2012
2.1
LOWCVSS 2.0
EPSS 1.09%
Description
Affected products
Remediation
References (8)
Change history (0)
No recorded changes yet.