CVE-2010-3094
Publication date 21 September 2010
Last updated 24 July 2024
Ubuntu priority
Description
Multiple cross-site scripting (XSS) vulnerabilities in Drupal 6.x before 6.18 allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via (1) an action description, (2) an action message, (3) a node, or (4) a taxonomy term, related to the actions feature and the trigger module.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| drupal6 | ||
Patch details
| Package | Patch details |
|---|---|
| drupal6 |