CNNVD-202507-1928 Information

CNNVD ID

CNNVD-202507-1928

CVE-2025-53834

  • CNNVD Published: 2025-07-14

Description (Chinese)

Caido是Caido开源的一个应用程序。旨在帮助安全专业人员和爱好者高效、轻松地审核 Web 应用程序。 Caido 0.49.0之前版本存在跨站脚本漏洞,该漏洞源于反射型跨站脚本,可能导致任意脚本执行。

Description (English)

Caido is an application from the Caido Open Source. The aim is to help security professionals and lovers efficiently and easily review Web applications. The pre-Caido 0.49.0 version had a cross-site script loophole, which originated in a reflector-type cross-site script and could lead to arbitrary script execution.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

Caido

Published

2025-07-14

Last Modified

2026-02-24

References

https://github.com/caido/caido/releases/tag/v0.49.0 https://github.com/caido/caido/security/advisories/GHSA-h8jr-c6qq-h7m7 https://access.redhat.com/security/cve/cve-2025-53834

Patch

https://github.com/caido/caido/releases

Share on: