CVE-2012-0313: Glucose 2

Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in glucose 2 before stage 6.2 allows remote attackers to inject arbitrary web script or HTML via an RSS feed.

Affected products

  • Glucose Glucose 2: up to and including stage6.1; version beta_stage_5 only; version beta_stage_5.1 only; version stage6 only

Published 2012-01-24. Last modified 2026-06-16.