CVE-2025-31682
31.03.2025, 22:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Google Tag allows Cross-Site Scripting (XSS).This issue affects Google Tag: from 0.0.0 before 1.8.0, from 2.0.0 before 2.0.8.
Vendor | Product | Version |
---|---|---|
google_tag_project | google_tag | 7.x-1.0 ≤ 𝑥 < 8.x-1.8 |
google_tag_project | google_tag | 2.0.0 ≤ 𝑥 < 2.0.8 |
𝑥
= Vulnerable software versions