Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-37cc-q9ww-mg9w

Опубликовано: 16 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 4.8
CVSS3: 6.1

Описание

Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which occurs through multiple parameters within the endpoint ‘/node/kudaby/nodeFN/procedure’. This flaw allows the injection of arbitrary client-side scripts, which are immediately reflected in the HTTP response and executed in the victim's browser.

Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which occurs through multiple parameters within the endpoint ‘/node/kudaby/nodeFN/procedure’. This flaw allows the injection of arbitrary client-side scripts, which are immediately reflected in the HTTP response and executed in the victim's browser.

EPSS

Процентиль: 4%
0.0014
Низкий

4.8 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
7 месяцев назад

Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which occurs through multiple parameters within the endpoint ‘/node/kudaby/nodeFN/procedure’. This flaw allows the injection of arbitrary client-side scripts, which are immediately reflected in the HTTP response and executed in the victim's browser.

EPSS

Процентиль: 4%
0.0014
Низкий

4.8 Medium

CVSS4

6.1 Medium

CVSS3

Дефекты

CWE-79