CVE-2024-13273
09.01.2025, 20:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Open Social allows Cross-Site Scripting (XSS).This issue affects Open Social: from 0.0.0 before 12.3.8, from 12.4.0 before 12.4.5, from 13.0.0 before 13.0.0-alpha11.
Vendor | Product | Version |
---|---|---|
getopensocial | open_social | 𝑥 < 12.3.8 |
getopensocial | open_social | 12.4.0 ≤ 𝑥 < 12.4.5 |
getopensocial | open_social | 13.0.0:alpha1 |
getopensocial | open_social | 13.0.0:alpha10 |
getopensocial | open_social | 13.0.0:alpha2 |
getopensocial | open_social | 13.0.0:alpha3 |
getopensocial | open_social | 13.0.0:alpha4 |
getopensocial | open_social | 13.0.0:alpha5 |
getopensocial | open_social | 13.0.0:alpha6 |
getopensocial | open_social | 13.0.0:alpha7 |
getopensocial | open_social | 13.0.0:alpha8 |
getopensocial | open_social | 13.0.0:alpha9 |
𝑥
= Vulnerable software versions