CVE-2008-1476
Serendipity <1.3 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Serendipity (S9Y) before 1.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to received trackbacks.
References (7)
Scores
EPSS
0.0052
EPSS Percentile
66.3%
Classification
CWE
CWE-79
Status
draft
Affected Products (26)
serendipity/serendipity
< 1.2.1
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
serendipity/serendipity
... and 11 more
Timeline
Published
Mar 24, 2008
Tracked Since
Feb 18, 2026