Cross-site scripting (XSS) vulnerability in BadBlue Personal Edition 1.7.3 allows remote attackers to execute arbitrary script as other users by injecting script into the cleanSearchString() function.
| Software | From | Fixed in |
|---|---|---|
| working_resources_inc. / badblue | personal_1.7.3 | personal_1.7.3.x |