James Clarke aka clark0r has discovered a cross-site scripting vulnerability affecting IBM Rational ClearQuest Web. Malicious people can exploit this vulnerability to hijack a user's session.
AlFa has discovered a cross-site scripting vulnerability in phpMyAdmin. Malicious people can exploit this vulnerability to steal user credentials stored in a browser password manager.