CNNVD-202511-907 Information
Nov 10, 2025
cve
CNNVD ID
CNNVD-202511-907
Related CVE
- CNNVD Published: 2025-11-10
Description (Chinese)
changedetection.io是dgtlmoon个人开发者的一个网站变更检测、监控和通知应用程序。 changedetection.io 0.50.34之前版本存在跨站脚本漏洞,该漏洞源于安全检查不足,可能导致存储型跨站脚本攻击。
Description (English)
Changetedetaction.io is a website change detection, monitoring and notification application for dgtlmoon personal developers. There was a cross-site script loophole in the pre-changetetaction.io 0.50.34 version, which stemmed from inadequate security checks and could lead to storage-type cross-site script attacks.
Hazard Level
Critical
Vulnerability Type
跨站脚本
Affected Vendor
个人开发者
Published
2025-11-10
Last Modified
2026-02-24
References
https://github.com/dgtlmoon/changedetection.io/security/advisories/GHSA-4c3j-3h7v-22q9 https://access.redhat.com/security/cve/cve-2025-62780
Patch
https://github.com/dgtlmoon/changedetection.io/releases
Share on: