Full title: Yellowfin Cross Site Scripting / Insecure Direct Object Reference Vulnerabilities Category: web applications Platform: php Yellowfin versions prior to 9.6.1 suffer from persistent cross site scripting and insecure direct object reference vulnerabilities. # 0day.today @ http://0day.today/