Логотип exploitDog
bind:CVE-2025-43703
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-43703

Количество 4

Количество 4

ubuntu логотип

CVE-2025-43703

10 месяцев назад

An issue was discovered in Ankitects Anki through 25.02. A crafted shared deck can result in attacker-controlled access to the internal API (even though the attacker has no knowledge of an API key) through approaches such as scripts or the SRC attribute of an IMG element. NOTE: this issue exists because of an incomplete fix for CVE-2024-32484.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2025-43703

10 месяцев назад

An issue was discovered in Ankitects Anki through 25.02. A crafted shared deck can result in attacker-controlled access to the internal API (even though the attacker has no knowledge of an API key) through approaches such as scripts or the SRC attribute of an IMG element. NOTE: this issue exists because of an incomplete fix for CVE-2024-32484.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2025-43703

10 месяцев назад

An issue was discovered in Ankitects Anki through 25.02. A crafted sha ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-634v-x2r3-jm25

10 месяцев назад

An issue was discovered in Ankitects Anki through 25.02. A crafted shared deck can result in attacker-controlled access to the internal API (even though the attacker has no knowledge of an API key) through approaches such as scripts or the SRC attribute of an IMG element. NOTE: this issue exists because of an incomplete fix for CVE-2024-32484.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-43703

An issue was discovered in Ankitects Anki through 25.02. A crafted shared deck can result in attacker-controlled access to the internal API (even though the attacker has no knowledge of an API key) through approaches such as scripts or the SRC attribute of an IMG element. NOTE: this issue exists because of an incomplete fix for CVE-2024-32484.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2025-43703

An issue was discovered in Ankitects Anki through 25.02. A crafted shared deck can result in attacker-controlled access to the internal API (even though the attacker has no knowledge of an API key) through approaches such as scripts or the SRC attribute of an IMG element. NOTE: this issue exists because of an incomplete fix for CVE-2024-32484.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-43703

An issue was discovered in Ankitects Anki through 25.02. A crafted sha ...

CVSS3: 6.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-634v-x2r3-jm25

An issue was discovered in Ankitects Anki through 25.02. A crafted shared deck can result in attacker-controlled access to the internal API (even though the attacker has no knowledge of an API key) through approaches such as scripts or the SRC attribute of an IMG element. NOTE: this issue exists because of an incomplete fix for CVE-2024-32484.

CVSS3: 6.1
0%
Низкий
10 месяцев назад

Уязвимостей на страницу