CVE-2012-1215
Yoono For Firefox < 7.7.7 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the Add friends module in the Yoono extension before 7.7.8 for Firefox allows remote attackers to inject arbitrary web script or HTML via the create field in a "Create a group" action.
References (5)
Scores
EPSS
0.0034
EPSS Percentile
56.4%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
yoono/yoono_for_firefox
< 7.7.7
n/a/n/a
Timeline
Published
Feb 21, 2012
Tracked Since
Feb 18, 2026