CNNVD-202511-2331 Information

CNNVD ID

CNNVD-202511-2331

CVE-2025-62296

  • CNNVD Published: 2025-11-20

Description (Chinese)

SOPlanning是SOPlanning公司的一套在线项目管理软件。 SOPlanning 1.55之前版本存在跨站脚本漏洞,该漏洞源于/taches端点未对输入进行适当清理,可能导致存储型跨站脚本。

Description (English)

Soplanning is an online project management software package for SOplanning. The pre-SOPlanning 1.55 version has a cross-site script loophole, which arises from the failure of the/taches endpoint to properly clean up the input, which may result in a storage-type cross-site script.

Hazard Level

High

Vulnerability Type

跨站脚本

Published

2025-11-20

Last Modified

2026-02-24

References

https://cert.pl/en/posts/2025/11/CVE-2025-62293 https://www.soplanning.org/en/

Patch

https://www.soplanning.org/en/

Share on: