Description
Cross-site scripting (XSS) vulnerability in Bibliography (Biblio) 5.x before 5.x-1.17 and 6.x before 6.x-1.6, a module for Drupal, allows remote attackers, with "create content displayed by the Bibliography module" permissions, to inject arbitrary web script or HTML via a title.
Remediation
References
Related Vulnerabilities
WordPress Plugin SecuPress Free-WordPress Security Security Bypass (1.4.13)
WordPress Plugin WPtouch 'wptouch_redirect' Parameter URI Redirection (1.9.32)
WordPress Plugin Survey Maker-Best WordPress Survey SQL Injection (3.1.1)
WordPress Plugin Store Locator Plus for WordPress Privilege Escalation (5.5.14)
WordPress Plugin WP Easy Gallery 'select_gallery' Parameter Cross-Site Scripting (1.7)