CVE-2010-1427
MODx Evolution <1.0.3 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in the SearchHighlight plugin in MODx Evolution before 1.0.3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to AjaxSearch.
References (5)
Scores
EPSS
0.0029
EPSS Percentile
52.5%
Classification
CWE
CWE-79
Status
published
Affected Products (10)
modxcms/evolution
< 1.0.2
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
modxcms/evolution
n/a/n/a
Timeline
Published
Apr 15, 2010
Tracked Since
Feb 18, 2026