Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qxh9-qmf2-rhwc

Опубликовано: 13 июл. 2025
Источник: github
Github: Прошло ревью
CVSS3: 6.4

Описание

Roundup is vulnerable to XSS through interactions between URLs and issue tracker templates

In Roundup before 2.5.0, XSS can occur via interaction between URLs and issue tracker templates (devel and responsive).

Пакеты

Наименование

roundup

pip
Затронутые версииВерсия исправления

< 2.5.0

2.5.0

EPSS

Процентиль: 10%
0.00037
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.4
ubuntu
около 2 месяцев назад

In Roundup before 2.5.0, XSS can occur via interaction between URLs and issue tracker templates (devel and responsive).

CVSS3: 6.4
nvd
около 2 месяцев назад

In Roundup before 2.5.0, XSS can occur via interaction between URLs and issue tracker templates (devel and responsive).

CVSS3: 6.4
debian
около 2 месяцев назад

In Roundup before 2.5.0, XSS can occur via interaction between URLs an ...

EPSS

Процентиль: 10%
0.00037
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-79