Multiple cross-site scripting (XSS) vulnerabilities in the site creation interface in ikiwiki-hosting before 0.20131025 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
{
"binaries": [
{
"binary_version": "0.20131025",
"binary_name": "ikiwiki-hosting-common"
},
{
"binary_version": "0.20131025",
"binary_name": "ikiwiki-hosting-dns"
},
{
"binary_version": "0.20131025",
"binary_name": "ikiwiki-hosting-web"
}
],
"availability": "No subscription required"
}