The Category Tokens Project maintains a narrowly scoped token-handling utility with a niche footprint in the vulnerability landscape, centered on its core Category Tokens product. The observed exposure reflects input-handling vulnerabilities characteristic of web-facing components, specifically cross-site scripting weaknesses that arise from improper neutralization during page generation.
The number and severity of CVEs published that impact products developed by Category Tokens Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
Cross-site scripting (XSS) vulnerability in the Category Tokens module 6.x before 6.x-1.1 for Drupal allows remote authenticated users with administer taxonomy permissions to injec | Jul 8, 2011 | 3.5 | 15 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Category Tokens Project.
Media articles that mention a CVE ID that affects a product developed by Category Tokens Project — matched by CVE ID, not by vendor name.