CVE-2012-1624

Lingotek < 6.x-1.4 - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Lingotek module 6.x-1.x before 6.x-1.40 for Drupal allow remote authenticated users to inject arbitrary web script or HTML when (1) creating or (2) editing page content.

Scores

EPSS 0.0034
EPSS Percentile 56.0%

Classification

CWE
CWE-79
Status published

Affected Products (6)

lingotek/lingotek < 6.x-1.4
lingotek/lingotek
lingotek/lingotek
lingotek/lingotek
lingotek/lingotek
n/a/n/a

Timeline

Published Oct 06, 2012
Tracked Since Feb 18, 2026