Vulnerabilities > Kristof DE Jaeger > Display Suite > 7x.2.1

DATE CVE VULNERABILITY TITLE RISK
2013-06-25 CVE-2013-2177 Cross-Site Scripting vulnerability in Kristof DE Jaeger Display Suite
Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via an entity bundle label.
4.3