Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in the fusion_core_preprocess_page function in fusion_core/template.php in the Fusion module before 6.x-1.13 for Drupal allows remote attackers to inject arbitrary web script or HTML via the q parameter.
Software | From | Fixed in |
---|---|---|
fusiondrupalthemes / fusion | - | 6.x-1.12.x |
fusiondrupalthemes / fusion | 6.x-1.0-beta1 | 6.x-1.0-beta1.x |
fusiondrupalthemes / fusion | 6.x-1.0 | 6.x-1.0.x |
fusiondrupalthemes / fusion | 6.x-1.0-beta4 | 6.x-1.0-beta4.x |
fusiondrupalthemes / fusion | 6.x-1.0-rc1 | 6.x-1.0-rc1.x |
fusiondrupalthemes / fusion | 6.x-1.0-beta2 | 6.x-1.0-beta2.x |
fusiondrupalthemes / fusion | 6.x-1.0-dev | 6.x-1.0-dev.x |
fusiondrupalthemes / fusion | 6.x-1.0-beta3 | 6.x-1.0-beta3.x |
fusiondrupalthemes / fusion | 6.x-1.1 | 6.x-1.1.x |