CVE-2014-8379: Marketo Ma Project Marketo Ma
Low severity, CVSS 3.5. EPSS: 0.9% chance of exploitation in the next 30 days.
Multiple cross-site scripting (XSS) vulnerabilities in the Marketo MA module before 7.x-1.5 for Drupal allow remote authenticated users with certain permissions to inject arbitrary web script or HTML via vectors related to field titles to the (1) Webform or (2) User sub-modules.
Affected products
- Marketo Ma Project Marketo Ma: up to and including 7.x-1.3
Published 2014-10-21. Last modified 2026-06-17.