CNNVD-202510-3225 Information

CNNVD ID

CNNVD-202510-3225

CVE-2025-61413

  • CNNVD Published: 2025-10-23

Description (Chinese)

Piranha CMS是Piranha CMS开源的一个用作 .Net5 的友好的以编辑器为中心的 CMS。 Piranha CMS v12.1版本存在安全漏洞,该漏洞源于/manager/pages组件未充分清理用户输入,可能导致存储型跨站脚本攻击。

Description (English)

Piranha CMS is an open source of Piranha CMS, a friendly, editor-centred CMS for .Net5. Version Piranha CMS v12.1 contains a security loophole that originates from the inadequate cleaning of user input by the /manager/pages component, which may result in a storage-type cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Piranha CMS

Published

2025-10-23

Last Modified

2026-02-24

References

https://github.com/PiranhaCMS/piranha.core http://piranhacms.org/ https://github.com/Saconyfx/security-advisories/blob/main/CVE-2025-61413/advisory.md

Share on: