Medium
CVSS 4.3
Overview
Cross-site scripting (XSS) vulnerability in Goollery before 0.04b allows remote attackers to inject arbitrary HTML or web script via the conversation_id parameter to viewpic.php.
Cross-site scripting (XSS) vulnerability in Goollery before 0.04b allows remote ...
Cross-site scripting (XSS) vulnerability in Goollery before 0.04b allows remote attackers to inject arbitrary HTML or web script via the conversation_id parameter to viewpic.php.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: