Filtered by vendor Panopoly Magic Project Subscriptions
Filtered by product Panopoly Magic Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2015-2086 1 Panopoly Magic Project 1 Panopoly Magic 2024-09-17 N/A
Cross-site scripting (XSS) vulnerability in the live preview in the Panopoly Magic module before 7.x-1.17 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a pane title.