CVE-2025-60646 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A stored cross-site scripting (XSS) in the Business Line Management module of Xxl-api v1.3.0 attackers to execute arbitrary web scripts or HTML via injecting a…
Medium CVSS: 6.1

CVE-2025-60646

A stored cross-site scripting (XSS) in the Business Line Management module of Xxl-api v1.3.0 attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name parameter.
Vendor
Xuxueli
Product
Xxl-api
CWE
CWE-79
Yayın Tarihi
2025-11-12 19:15:37
Güncelleme
2025-12-03 21:30:51
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar