CNNVD-202511-907 Information

CNNVD ID

CNNVD-202511-907

CVE-2025-62780

  • CNNVD Published: 2025-11-10

Description (Chinese)

changedetection.io是dgtlmoon个人开发者的一个网站变更检测、监控和通知应用程序。 changedetection.io 0.50.34之前版本存在跨站脚本漏洞,该漏洞源于安全检查不足,可能导致存储型跨站脚本攻击。

Description (English)

Changetedetaction.io is a website change detection, monitoring and notification application for dgtlmoon personal developers. There was a cross-site script loophole in the pre-changetetaction.io 0.50.34 version, which stemmed from inadequate security checks and could lead to storage-type cross-site script attacks.

Hazard Level

Critical

Vulnerability Type

跨站脚本

Affected Vendor

个人开发者

Published

2025-11-10

Last Modified

2026-02-24

References

https://github.com/dgtlmoon/changedetection.io/security/advisories/GHSA-4c3j-3h7v-22q9 https://access.redhat.com/security/cve/cve-2025-62780

Patch

https://github.com/dgtlmoon/changedetection.io/releases

Share on: