Launchpad.net

CVE 2008-0404

Cross-site scripting (XSS) vulnerability in Mantis before 1.1.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to the "Most active bugs" summary.

See the CVE page on Mitre.org for more details.