Candidate: CVE-2009-2959 PublicDate: 2009-08-25 17:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2959 Description: Cross-site scripting (XSS) vulnerability in the waterfall web status view (status/web/waterfall.py) in Buildbot 0.7.6 through 0.7.11p1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_buildbot: upstream_buildbot: needs-triage dapper_buildbot: ignored (reached end-of-life) hardy_buildbot: ignored (reached end-of-life) intrepid_buildbot: needed (reached end-of-life) jaunty_buildbot: ignored (reached end-of-life) karmic_buildbot: ignored (reached end-of-life) lucid_buildbot: not-affected (0.7.11p3-1) maverick_buildbot: not-affected (0.7.11p3-1) natty_buildbot: not-affected (0.7.11p3-1) oneiric_buildbot: not-affected (0.7.11p3-1) devel_buildbot: not-affected (0.7.11p3-1)