Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-61994

Опубликовано: 06 нояб. 2025
Источник: nvd
CVSS3: 5.4
EPSS Низкий

Описание

Cross-site scripting vulnerability exists in GROWI prior to v7.2.10. If a malicious user creates a page containing crafted contents, an arbitrary script may be executed on the web browser of a victim user who accesses the page.

EPSS

Процентиль: 13%
0.00042
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
github
3 месяца назад

Cross-site scripting vulnerability exists in GROWI prior to v7.2.10. If a malicious user creates a page containing crafted contents, an arbitrary script may be executed on the web browser of a victim user who accesses the page.

EPSS

Процентиль: 13%
0.00042
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79