VendorsGabor Hojtsycommentrss5.x-2.0
Vulnerabilities

Gabor Hojtsy Commentrss 5.x-2.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2009-3568
Comment RSS 5.x before 5.x-2.2 and 6.x before 6.x-2.2, a module for Drupal, does not properly enforce permissions when a link is added to the RSS feed, which allows remote attackers to obtain the node title and possibly other sensitive content by reading the feed.
Published 2009-10-06 · Modified
5.0EPSS 0.014