CNNVD-202508-663 Information

CNNVD ID

CNNVD-202508-663

CVE-2025-55134

  • CNNVD Published: 2025-08-07

Description (Chinese)

agora是Agora Foundation开源的一个基于云的学习和研究平台。 agora fall23-Alpha1 b087490之前版本存在跨站脚本漏洞,该漏洞源于editorManager.js中tag参数容易受到跨站脚本攻击。

Description (English)

agora is a cloud-based learning and research platform for the Agora Foundation. Prior to agora fall23-alpha1 b087490, there was a cross-site script loophole, which originated from the vulnerability of the editoorManager.js to cross-site script attacks.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

Agora Foundation

Published

2025-08-07

Last Modified

2026-02-24

References

https://github.com/agorafoundation/agora/commit/b087490042cb131963b524d0f86511a63a7ff085 https://github.com/agorafoundation/agora/pull/556

Patch

https://freeagora.org/

Share on: