Vulnerabilities (CVE)

Filtered by vendor Michael Hudson-doyle Subscribe
Filtered by product Loggerhead
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-0728 1 Michael Hudson-doyle 1 Loggerhead 2024-02-04 3.5 LOW N/A
Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.