Cross-site scripting (XSS) vulnerability in the Read More Link module 6.x-3.x before 6.x-3.1 for Drupal allows remote authenticated users with the access administration pages permission to inject arbitrary web script or HTML via unspecified vectors.Referenceshttp://drupal.org/node/1471822http://www.osvdb.org/79856http://www.securityfocus.com/bid/52340http://drupal.org/node/1471080http://secunia.com/advisories/48138http://www.openwall.com/lists/oss-security/2012/04/07/1https://exchange.xforce.ibmcloud.com/vulnerabilities/73777