CVE-2012-5654: Nodewords Project Nodewords

Medium severity, CVSS 4.3. EPSS: 1.2% chance of exploitation in the next 30 days.

The Nodewords: D6 Meta Tags module before 6.x-1.14 for Drupal, when configured to automatically generate description meta tags from node text, does not properly filter node content when creating tags, which might allow remote attackers to obtain sensitive information by reading the (1) description, (2) dc.description or (3) og:description meta tags.

Affected products

  • Nodewords Project Nodewords: up to and including 6.x-1.14; version 4.7-1.0 only; version 4.7-1.1 only; version 4.7-1.2 only; version 4.7-1.x only; version 5.x-1.0 only; …

Published 2013-01-03. Last modified 2026-06-16.