Ravennuke · Ravennuke · CVE-2009-0679
**Name of the Vulnerable Software and Affected Versions**
RavenNuke version 2.30
**Description**
A cross-site scripting (XSS) issue exists in the Your Account module, allowing remote attackers to inject arbitrary web script or HTML. This can be achieved via unspecified vectors.
**Recommendations**
For RavenNuke version 2.30, update the Your Account module to a version that addresses this issue, or consider disabling the module until a patch is available to prevent exploitation.