Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Mass Contact Project Subscribe
Filtered by product Mass Contact
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-6807 1 Mass Contact Project 1 Mass Contact 2015-09-04 2.1 LOW N/A
Cross-site scripting (XSS) vulnerability in the Mass Contact module 6.x-1.x before 6.x-1.6 and 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "administer mass contact" permission to inject arbitrary web script or HTML via a category label.