GHSA-f3f3-5q5j-6v47
Dashboard / Vulnerabilities / GHSA-f3f3-5q5j-6v47
Summary: GeSHi vulnerable to Cross-site Scripting
Details: Cross-site scripting (XSS) vulnerability in contrib/langwiz.php in GeSHi before 1.0.8.11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References: https://nvd.nist.gov/vuln/detail/CVE-2012-3522, https://github.com/GeSHi/geshi-1.0, https://lists.fedorahosted.org/archives/list/[email protected]/message/AE33KOZ42XXG6DSH5SNGOTC3NS7FWZ2I, https://lists.fedorahosted.org/archives/list/[email protected]/message/H2R65LEAIDK6I53IYGZWDCRETBYKNUKF, https://lists.fedorahosted.org/archives/list/[email protected]/message/JA5TA3T7AJXWM4QMI62LMGW62WZUULGB, http://sourceforge.net/p/geshi/code/2508, http://www.openwall.com/lists/oss-security/2012/08/21/11
Affected packages
Package
Name: geshi/geshi
Purl: pkg:composer/geshi/geshi
Affected ranges
Type: ECOSYSTEM
Events:
