CVE-2011-4560
Drupal Petition Node Module - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the Petition Node module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors related to signing a petition.
References (5)
Scores
EPSS
0.0021
EPSS Percentile
43.3%
Classification
CWE
CWE-79
Status
published
Affected Products (12)
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
drupal/petition_node_module
n/a/n/a
Timeline
Published
Nov 28, 2011
Tracked Since
Feb 18, 2026