: XSS flaws in older song history pages (CVE-2014-4166) can allow attackers to inject malicious scripts into your listeners' browsers. Denial of Service