Arbitrary Web Script Injection Vulnerability in Drupal 8.x before 8.1.10

Arbitrary Web Script Injection Vulnerability in Drupal 8.x before 8.1.10

CVE-2016-7571 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in Drupal 8.x before 8.1.10 allows remote attackers to inject arbitrary web script or HTML via vectors involving an HTTP exception.

Learn more about our Web App Pen Testing.