Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-59905

Опубликовано: 16 фев. 2026
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which occurs through multiple parameters within the endpoint ‘/node/kudaby/nodeFN/procedure’. This flaw allows the injection of arbitrary client-side scripts, which are immediately reflected in the HTTP response and executed in the victim's browser.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:kubysoft:kubysoft:-:*:*:*:*:*:*:*

EPSS

Процентиль: 4%
0.0014
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
github
7 месяцев назад

Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which occurs through multiple parameters within the endpoint ‘/node/kudaby/nodeFN/procedure’. This flaw allows the injection of arbitrary client-side scripts, which are immediately reflected in the HTTP response and executed in the victim's browser.

EPSS

Процентиль: 4%
0.0014
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79