CNNVD-202511-2169 Information
Nov 19, 2025
cve
CNNVD ID
CNNVD-202511-2169
Related CVE
- CNNVD Published: 2025-11-19
Description (Chinese)
Lookyloo是Lookyloo开源的一个网站捕获工具。 Lookyloo 1.35.1之前版本存在跨站脚本漏洞,该漏洞源于index和tree页面存在潜在的跨站脚本攻击。
Description (English)
Lokylo is a web catch tool for Lokylo Open Source. The previous version of Lokylo 1.35.1 had a cross-site script loophole, which originated from a potential cross-site script attack on the index and tree pages.
Hazard Level
Low
Vulnerability Type
跨站脚本
Affected Vendor
Lookyloo
Published
2025-11-19
Last Modified
2026-02-24
References
https://github.com/Lookyloo/lookyloo/blob/main/website/web/default_csp.py https://github.com/Lookyloo/lookyloo/commit/ac2f73dbfcad88b815b18c42cca77a1c645f1726 https://github.com/Lookyloo/lookyloo/security/advisories/GHSA-m9g6-23c8-vrxf https://vulnerability.circl.lu/vuln/gcve-1-2025-0018
Patch
https://github.com/Lookyloo/lookyloo/releases
Share on: