VYPR

Biblio Autocomplete

by Biblio Autocomplete Project

CVEs (2)

  • CVE-2014-5250Aug 14, 2014
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in the AJAX autocompletion callback in the Biblio Autocomplete module 6.x-1.x before 6.x-1.1 and 7.x-1.x before 7.x-1.5 for Drupal allows remote attackers to access data via unspecified vectors.

  • CVE-2014-5249Aug 14, 2014
    risk 0.00cvss epss 0.00

    SQL injection vulnerability in the "Biblio self autocomplete" submodule in the Biblio Autocomplete module 6.x-1.x before 6.x-1.1 and 7.x-1.x before 7.x-1.5 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.