CVE-2009-3299
Mahara < 1.0.12 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the resume blocktype in Mahara before 1.0.13, and 1.1.x before 1.1.7, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References (9)
Scores
EPSS
0.0060
EPSS Percentile
69.3%
Classification
CWE
CWE-79
Status
published
Affected Products (22)
mahara/mahara
< 1.0.12
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
mahara/mahara
... and 7 more
Timeline
Published
Nov 03, 2009
Tracked Since
Feb 18, 2026