Launchpad.net

CVE 2008-1476

Cross-site scripting (XSS) vulnerability in Serendipity (S9Y) before 1.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to received trackbacks.

See the CVE page on Mitre.org for more details.