CVE-2008-1976

Drupal i18n & Localizer <5.x-2.3/6.x-1.0 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Drupal modules (1) Internationalization (i18n) 5.x before 5.x-2.3 and 5.x-1.1 and 6.x before 6.x-1.0 beta 1; and (2) Localizer 5.x before 5.x-3.4, 5.x-2.1, and 5.x-1.11; allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0052
EPSS Percentile 66.4%

Classification

CWE
CWE-79
Status draft

Affected Products (23)

localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
localizer_project/localizer
... and 8 more

Timeline

Published Apr 27, 2008
Tracked Since Feb 18, 2026