CVE

Id
39173  
CVE No.
CVE-2009-1738  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in Feed Block 6.x-1.x before 6.x-1.1, a module for Drupal, allows remote authenticated users with administrator feed permissions to inject arbitrary web script or HTML via unspecified vectors in "aggregator items."  
Phase
Assigned (20090520)  
Votes
None (candidate not yet proposed)  
Comments