Cross-Site Scripting in Serendipity Image Manager by Xinha
CVE-2011-1134
9.8CRITICAL
What is CVE-2011-1134?
The Serendipity package, prior to version 1.5.5, contains a Cross-Site Scripting vulnerability in the Xinha component. This flaw permits remote attackers to execute arbitrary code through the image manager, raising significant security concerns for users who have not updated to the latest version. Properly sanitizing input and ensuring updates can mitigate the risk associated with this vulnerability.
