Vulnerabilities > Zfcuser Project > Zfcuser
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-01-15 | CVE-2015-1039 | Cross-site Scripting vulnerability in Zfcuser Project Zfcuser 1.2.1 Cross-site scripting (XSS) vulnerability in user/login.phtml in ZF-Commons ZfcUser before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the redirect parameter. | 4.3 |