Vulnerabilities > Term Merge Project

DATE CVE VULNERABILITY TITLE RISK
2015-04-21 CVE-2015-3360 Cross-site Scripting vulnerability in Term Merge Project Term Merge 7.X1.1
Cross-site scripting (XSS) vulnerability in the Term Merge module before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
3.5