Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3c2-xwq9-6ph4

Опубликовано: 31 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6
CVSS3: 5.4

Описание

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in the Unified Search feature.

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in the Unified Search feature.

EPSS

Процентиль: 4%
0.00144
Низкий

8.6 High

CVSS4

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
ubuntu
5 месяцев назад

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in the Unified Search feature.

CVSS3: 5.4
nvd
5 месяцев назад

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in the Unified Search feature.

CVSS3: 5.4
debian
5 месяцев назад

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0 ...

EPSS

Процентиль: 4%
0.00144
Низкий

8.6 High

CVSS4

5.4 Medium

CVSS3

Дефекты

CWE-79