Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Google Tag allows Cross-Site Scripting (XSS).This issue affects Google Tag: from 0.0.0 before 1.8.0, from 2.0.0 before 2.0.8.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| drupal/google_tag(Packagist) | 0 | 1.8.0 | N/A |
| drupal/google_tag(Packagist) | 2.0.0 | 2.0.8 | N/A |
CVSS Metrics