{"id":"CVE-2011-4928","details":"Cross-site scripting (XSS) vulnerability in the textile formatter in Redmine before 1.0.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.","modified":"2026-04-10T03:42:07.547559Z","published":"2012-10-08T18:55:00Z","references":[{"type":"ADVISORY","url":"http://www.debian.org/security/2011/dsa-2261"},{"type":"ADVISORY","url":"http://www.redmine.org/news/49"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/01/06/5"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/01/06/7"}],"schema_version":"1.7.5"}