← Back

Kristof De Jaeger

kristof_de_jaeger

3 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Bundle Copy
bundle_copy
Display Suite
display_suite

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kristof De Jaeger
1Display Suite
Apr 29, 2026
Jun 25, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script...Show more
Cross-site scripting (XSS) vulnerability in the Display Suite module 7.x-1.x before 7.x-1.7 and 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via an entity bundle label.Show less
1Kristof De Jaeger
1Bundle Copy
Apr 29, 2026
Aug 14, 2012
N/A· v4
N/A· v3
6.0 MEDIUM· v2
The Bundle copy module 7.x-1.x before 7.x-1.1 for Drupal does not check for the "use PHP for settings" permission while importing settings, which allows remote authenticated users with certain permissions to execute arbi...Show more
The Bundle copy module 7.x-1.x before 7.x-1.1 for Drupal does not check for the "use PHP for settings" permission while importing settings, which allows remote authenticated users with certain permissions to execute arbitrary PHP code via unspecified vectors.Show less
1Kristof De Jaeger
1Commentreference
Apr 23, 2026
Dec 31, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The CCK Comment Reference module 5.x before 5.x-1.2 and 6.x before 6.x-1.3, a module for Drupal, allows remote attackers to bypass intended access restrictions and read comments by using the autocomplete path.