Total vulnerabilities in the database
Roundup before 2.4.0 allows XSS via a SCRIPT element in an HTTP Referer header.
Software | From | Fixed in |
---|---|---|
![]() |
- | 2.4.0 |
roundup-tracker / roundup | - | 2.4.0 |