CVE-2009-2947

Xapian Omega < 1.0.15 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in Xapian Omega before 1.0.16 allows remote attackers to inject arbitrary web script or HTML via unspecified CGI parameter values, which are sometimes included in exception messages.

Scores

EPSS 0.0044
EPSS Percentile 63.0%

Classification

CWE
CWE-79
Status published

Affected Products (33)

xapian/omega < 1.0.15
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
xapian/omega
... and 18 more

Timeline

Published Sep 14, 2009
Tracked Since Feb 18, 2026