296,746
Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in services/obrowser/index.php in Horde 3.2 and Turba 2.2 allows remote attackers to inject arbitrary web script or HTML via the contact name.
| Software | From | Fixed in |
|---|---|---|
| debian / turba | 2.2 | 2.2.x |
| debian / horde | 3.2 | 3.2.x |