Cross-site scripting (XSS) vulnerability in the RSS reader in Glue Software NewsGlue before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via a feed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Newsglue | Glue_software | * | 1.3.3 (including) |