ZeroHour

CVE-2016-7571

CVSS 3.0
6.1 medium
EPSS
1%p73
Published
()
Modified
Description

Cross-site scripting (XSS) vulnerability in Drupal 8.x before 8.1.10 allows remote attackers to inject arbitrary web script or HTML via vectors involving an HTTP exception.

Vendors
drupal
Products
drupal
Ecosystems
Drupal
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.