Vulnerabilities (CVE)

Filtered by vendor Michael Hudson-doyle Subscribe
Filtered by product Loggerhead
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-0728 1 Michael Hudson-doyle 1 Loggerhead 2017-08-17 3.5 LOW N/A
Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.