CNNVD-202508-2205 Information
Aug 19, 2025
cve
CNNVD ID
CNNVD-202508-2205
Related CVE
- CNNVD Published: 2025-08-19
Description (Chinese)
FlaskBlog是Doğukan Ürker个人开发者的一个使用 Flask 构建的简单博客应用程序。 FlaskBlog 2.8.0及之前版本存在安全漏洞,该漏洞源于未验证帖子内容可能导致存储型跨站脚本。
Description (English)
FluskBlog is a simple blog application by Doğukan Ürker’s personal developer using the Flash. FlaskBlog 2.8.0 and previous versions had a security loophole, which stemmed from unverified content that could lead to storage-type cross-site scripts.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
个人开发者
Published
2025-08-19
Last Modified
2026-02-24
References
https://github.com/DogukanUrker/FlaskBlog/security/advisories/GHSA-gj9v-qhc3-gcfx https://nvd.nist.gov/vuln/detail/CVE-2025-55735 https://access.redhat.com/security/cve/cve-2025-55735
Patch
https://github.com/DogukanUrker/FlaskBlog/releases
Share on: