CVE-2013-2311
Web2py < 2.2.1 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in static/js/share.js (aka the social bookmarking widget) in Web2py before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Scores
EPSS
0.0025
EPSS Percentile
48.5%
Details
CWE
CWE-79
Status
published
Products (50)
web2py/web2py
< 2.2.1
web2py/web2py
web2py/web2py
web2py/web2py
web2py/web2py
web2py/web2py
web2py/web2py
web2py/web2py
web2py/web2py
web2py/web2py
... and 40 more
Published
May 22, 2013
Tracked Since
Feb 18, 2026