|
Webform Validation Module for Drupal contains multiple flaws that allow remote cross-site scripting (XSS) attacks. These flaws exist because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|