CVE-2007-3910
Bandersnatch - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in Bandersnatch 0.4 allows remote attackers to inject arbitrary JavaScript via a Jabber resource name and possibly other data items, which are stored in conversation logs.
References (6)
Scores
EPSS
0.0061
EPSS Percentile
69.4%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
bandersnatch/bandersnatch
Timeline
Published
Jul 19, 2007
Tracked Since
Feb 18, 2026