CNNVD-202511-2334 Information

CNNVD ID

CNNVD-202511-2334

CVE-2025-62295

  • CNNVD Published: 2025-11-20

Description (Chinese)

SOPlanning是SOPlanning公司的一套在线项目管理软件。 SOPlanning 1.55之前版本存在跨站脚本漏洞,该漏洞源于/groupe_form端点未对输入进行适当清理,可能导致存储型跨站脚本。

Description (English)

Soplanning is an online project management software package for SOplanning. The pre-SOPlanning 1.55 version has a cross-site script loophole, which stems from/groupe form endpoint failure to properly clean up input, which may lead to storage-type cross-site scripts.

Hazard Level

High

Vulnerability Type

跨站脚本

Published

2025-11-20

Last Modified

2026-02-24

References

https://cert.pl/en/posts/2025/11/CVE-2025-62293 https://www.soplanning.org/en/

Patch

https://www.soplanning.org/en/

Share on: