Unrated severityNVD Advisory· Published Sep 30, 2009· Updated Apr 23, 2026
CVE-2009-3488
CVE-2009-3488
Description
Cross-site scripting (XSS) vulnerability in the Bibliography (aka Biblio) module 6.x-1.6 for Drupal allows remote authenticated users, with certain content-creation privileges, to inject arbitrary web script or HTML via the Title field, probably a different vulnerability than CVE-2009-3479.
Affected products
1- cpe:2.3:a:ron_jerome:bibliography:6.x-1.6:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.