Cross-site scripting (XSS) vulnerability in the output filter in Drupal 5.x before 5.10 and 6.x before 6.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00508.html
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00259.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/44445
https://bugzilla.redhat.com/show_bug.cgi?id=459108
http://www.vupen.com/english/advisories/2008/2392
http://www.securityfocus.com/bid/30689
http://secunia.com/advisories/31825