cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2014-8745,https://securityvulnerability.io/vulnerability/CVE-2014-8745,,"Cross-site scripting (XSS) vulnerability in the Custom Search module 6.x-1.x before 6.x-1.13 and 7.x-1.x before 7.x-1.15 for Drupal allows remote authenticated users with the ""administer taxonomy"" permission to inject arbitrary web script or HTML via a taxonomy vocabulary label.",Drupal,Custom Search Module,,,0.0010900000343099236,false,,false,false,false,,,false,false,,2014-10-13T18:00:00.000Z,0 CVE-2014-7870,https://securityvulnerability.io/vulnerability/CVE-2014-7870,,"Cross-site scripting (XSS) vulnerability in the Custom Search module 6.x-1.x before 6.x-1.12 and 7.x-1.x before 7.x-1.14 for Drupal allows remote authenticated users with the ""administer custom search"" permission to inject arbitrary web script or HTML via the ""Label text"" field to admin/config/search/custom_search/results.",Drupal,Custom Search Module,,,0.001019999966956675,false,,false,false,false,,,false,false,,2014-10-06T14:55:00.000Z,0