cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-13308,https://securityvulnerability.io/vulnerability/CVE-2024-13308,Cross-Site Scripting Vulnerability in Drupal Browser Back Button,"An issue has been identified in the Drupal Browser Back Button that allows for Cross-Site Scripting (XSS) attacks due to improper neutralization of input during web page generation. This vulnerability affects versions of the Browser Back Button from 1.0.0 through 2.0.1, enabling malicious actors to inject arbitrary scripts into web pages viewed by users, potentially leading to compromised user data and session hijacking.",Drupal,Browser Back Button,3.8,LOW,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-09T21:15:00.000Z,0