CNNVD-202506-2993 Information
Jun 23, 2025
cve
CNNVD ID
CNNVD-202506-2993
Related CVE
- CNNVD Published: 2025-06-23
Description (Chinese)
changedetection.io是dgtlmoon个人开发者的一个网站变更检测、监控和通知应用程序。 changedetection.io 0.50.4之前版本存在跨站脚本漏洞,该漏洞源于过滤器错误导致跨站脚本攻击。
Description (English)
Changetedetaction.io is a website change detection, monitoring and notification application for dgtlmoon personal developers. There was a cross-site script loophole in the pre-changetetaction.io 0.50.4 version, which resulted from a filter error leading to a cross-site script attack.
Hazard Level
High
Vulnerability Type
跨站脚本
Affected Vendor
Live Support
Published
2025-06-23
Last Modified
2026-02-24
References
https://github.com/dgtlmoon/changedetection.io/commit/3d5a544ea674cfce517adcd498877a8d760d0931 https://github.com/dgtlmoon/changedetection.io/security/advisories/GHSA-hwpg-x5hw-vpv9 https://access.redhat.com/security/cve/cve-2025-52558
Patch
https://github.com/dgtlmoon/changedetection.io/releases
Share on: