Логотип exploitDog
bind:CVE-2025-3801
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-3801

Количество 2

Количество 2

nvd логотип

CVE-2025-3801

10 месяцев назад

A vulnerability was found in songquanpeng one-api up to 0.6.10. It has been classified as problematic. This affects an unknown part of the component System Setting Handler. The manipulation of the argument Homepage Content/About System/Footer leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 2.4
EPSS: Низкий
github логотип

GHSA-wvcx-j62q-45qw

10 месяцев назад

one-api Cross-site Scripting vulnerability

CVSS3: 2.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-3801

A vulnerability was found in songquanpeng one-api up to 0.6.10. It has been classified as problematic. This affects an unknown part of the component System Setting Handler. The manipulation of the argument Homepage Content/About System/Footer leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 2.4
0%
Низкий
10 месяцев назад
github логотип
GHSA-wvcx-j62q-45qw

one-api Cross-site Scripting vulnerability

CVSS3: 2.4
0%
Низкий
10 месяцев назад

Уязвимостей на страницу