Vulnerabilities > Drupal > Link TO US > 5.x.1.x.dev

DATE CVE VULNERABILITY TITLE RISK
2008-09-24 CVE-2008-4149 Cross-Site Scripting vulnerability in Drupal Link TO US 5.X1.Xdev
Cross-site scripting (XSS) vulnerability in the Greg Holsclaw Link to Us module 5.x before 5.x-1.1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via the "Link page header" field.
network
drupal CWE-79
4.3