Back to search
CVE-2015-5667
Published: Oct 31, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in the HTML-Scrubber module before 0.15 for Perl, when the comment feature is enabled, allows remote attackers to inject arbitrary web script or HTML via a crafted comment.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://metacpan.org/release/HTML-Scrubber
x_refsource_CONFIRM
JVNDB-2015-000171
third-party-advisory
x_refsource_JVNDB
FEDORA-2015-fed35dffd7
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-95f5ff8d44
vendor-advisory
x_refsource_FEDORA
JVN#53973084
third-party-advisory
x_refsource_JVN
FEDORA-2015-84a95e39d4
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now