Vulnerabilities (CVE)

Filtered by vendor Panopoly Magic Project Subscribe
Filtered by product Panopoly Magic
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-2086 1 Panopoly Magic Project 1 Panopoly Magic 2024-02-04 3.5 LOW N/A
Cross-site scripting (XSS) vulnerability in the live preview in the Panopoly Magic module before 7.x-1.17 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a pane title.