Total vulnerabilities in the database
Mahara 1.10 before 1.10.0 and 15.04 before 15.04.0 are vulnerable to possible cross site scripting when dragging/dropping files into a collection if the file has Javascript code in its title.
Software | From | Fixed in |
---|---|---|
mahara / mahara | 1.10-rc1 | 1.10-rc1.x |
mahara / mahara | 15.04-rc1 | 15.04-rc1.x |
mahara / mahara | 15.04-rc2 | 15.04-rc2.x |