CVE-2009-4580
Hasta Blog 2.3 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in Hasta Blog 2.3 allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) yorumyaz.php and (2) blog.php.
References (5)
Scores
EPSS
0.0034
EPSS Percentile
56.4%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
hastablog/hasta_blog
n/a/n/a
Timeline
Published
Jan 06, 2010
Tracked Since
Feb 18, 2026