CVE-2012-1624
Lingotek < 6.x-1.4 - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in the Lingotek module 6.x-1.x before 6.x-1.40 for Drupal allow remote authenticated users to inject arbitrary web script or HTML when (1) creating or (2) editing page content.
References (7)
Scores
EPSS
0.0034
EPSS Percentile
56.0%
Classification
CWE
CWE-79
Status
published
Affected Products (6)
lingotek/lingotek
< 6.x-1.4
lingotek/lingotek
lingotek/lingotek
lingotek/lingotek
lingotek/lingotek
n/a/n/a
Timeline
Published
Oct 06, 2012
Tracked Since
Feb 18, 2026