Unrated severityNVD Advisory· Published Oct 3, 2014· Updated May 6, 2026
CVE-2014-6291
CVE-2014-6291
Description
Cross-site scripting (XSS) vulnerability in the Alphabetic Sitemap (alpha_sitemap) extension 0.0.3 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
3cpe:2.3:a:alphabetic_sitemap_project:alphabetic_sitemap:*:*:*:*:*:typo3:*:*+ 2 more
- cpe:2.3:a:alphabetic_sitemap_project:alphabetic_sitemap:*:*:*:*:*:typo3:*:*range: <=0.0.3
- cpe:2.3:a:alphabetic_sitemap_project:alphabetic_sitemap:0.0.1:*:*:*:*:typo3:*:*
- cpe:2.3:a:alphabetic_sitemap_project:alphabetic_sitemap:0.0.2:*:*:*:*:typo3:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.