Loading...
Loading...
Cross-site scripting (XSS) vulnerability in the import functionality in the bookmarks application in ownCloud before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 allows remote authenticated users to inject arbitrary web script or HTML by importing a link with an unspecified protocol. NOTE: this can be leveraged by remote attackers using CVE-2014-9041.
February 4, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2014-9042
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.