CVE-2009-3653
Darren OH Xml Sitemap - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the additional links interface in XML Sitemap 5.x-1.6, a module for Drupal, allows remote authenticated users, with "administer site configuration" permission, to inject arbitrary web script or HTML via unspecified vectors, related to link path output.
Scores
EPSS
0.0017
EPSS Percentile
37.5%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
darren_oh/xml_sitemap
n/a/n/a
Timeline
Published
Oct 09, 2009
Tracked Since
Feb 18, 2026