Cross-site scripting (XSS) vulnerability in the Mailform (mailform) extension before 0.9.24 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
| Software | From | Fixed in |
|---|---|---|
| sebastian_winterhalder / mailform | - | 0.9.23.x |
| sebastian_winterhalder / mailform | 0.9.10 | 0.9.10.x |
| sebastian_winterhalder / mailform | 0.9.12 | 0.9.12.x |
| sebastian_winterhalder / mailform | 0.9.13 | 0.9.13.x |
| sebastian_winterhalder / mailform | 0.9.14 | 0.9.14.x |