Cross-site scripting (XSS) vulnerability in the tag cloud search script (horde/services/portal/cloud_search.php) in Horde before 3.2.4 and 3.3.3, and Horde Groupware before 1.1.5, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
Wed, 28 May 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
Thu, 22 May 2025 04:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |

Status: PUBLISHED
Assigner: mitre
Published: 2009-03-17T21:00:00Z
Updated: 2024-09-16T19:04:13.248Z
Reserved: 2009-03-17T00:00:00Z
Link: CVE-2009-0931

No data.

Status : Deferred
Published: 2009-03-17T21:30:00.297
Modified: 2025-04-09T00:30:58.490
Link: CVE-2009-0931
