Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-43865

Опубликовано: 25 апр. 2025
Источник: nvd
CVSS3: 8.2
EPSS Низкий

Описание

React Router is a router for React. In versions on the 7.0 branch prior to version 7.5.2, it's possible to modify pre-rendered data by adding a header to the request. This allows to completely spoof its contents and modify all the values ​​of the data object passed to the HTML. This issue has been patched in version 7.5.2.

EPSS

Процентиль: 5%
0.00025
Низкий

8.2 High

CVSS3

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 6.5
redhat
4 месяца назад

React Router is a router for React. In versions on the 7.0 branch prior to version 7.5.2, it's possible to modify pre-rendered data by adding a header to the request. This allows to completely spoof its contents and modify all the values ​​of the data object passed to the HTML. This issue has been patched in version 7.5.2.

CVSS3: 8.2
github
4 месяца назад

React Router allows pre-render data spoofing on React-Router framework mode

EPSS

Процентиль: 5%
0.00025
Низкий

8.2 High

CVSS3

Дефекты

CWE-345