CVE-2008-7150

Refine by Taxonomy <5.x-0.1 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in Refine by Taxonomy 5.x before 5.x-0.1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a taxonomy term, which is not properly handled by refine_by_taxo when displaying tags.

Scores

EPSS 0.0023
EPSS Percentile 45.6%

Classification

CWE
CWE-79
Status published

Affected Products (2)

ber_kessels/refine_by_taxo
n/a/n/a

Timeline

Published Sep 01, 2009
Tracked Since Feb 18, 2026