Логотип exploitDog
bind:CVE-2025-65778
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-65778

Количество 3

Количество 3

nvd логотип

CVE-2025-65778

около 2 месяцев назад

An issue was discovered in Wekan The Open Source kanban board system up to version 18.15, fixed in 18.16. Uploaded attachments can be served with attacker-controlled Content-Type (text/html), allowing execution of attacker-supplied HTML/JS in the application's origin and enabling session/token theft and CSRF actions.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2025-65778

около 2 месяцев назад

An issue was discovered in Wekan The Open Source kanban board system u ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-9hv3-wvf3-ffmp

около 2 месяцев назад

An issue was discovered in Wekan The Open Source kanban board system up to version 18.15, fixed in 18.16. Uploaded attachments can be served with attacker-controlled Content-Type (text/html), allowing execution of attacker-supplied HTML/JS in the application's origin and enabling session/token theft and CSRF actions.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-65778

An issue was discovered in Wekan The Open Source kanban board system up to version 18.15, fixed in 18.16. Uploaded attachments can be served with attacker-controlled Content-Type (text/html), allowing execution of attacker-supplied HTML/JS in the application's origin and enabling session/token theft and CSRF actions.

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-65778

An issue was discovered in Wekan The Open Source kanban board system u ...

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-9hv3-wvf3-ffmp

An issue was discovered in Wekan The Open Source kanban board system up to version 18.15, fixed in 18.16. Uploaded attachments can be served with attacker-controlled Content-Type (text/html), allowing execution of attacker-supplied HTML/JS in the application's origin and enabling session/token theft and CSRF actions.

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу