CNNVD-202511-943 Information

CNNVD ID

CNNVD-202511-943

CVE-2025-63709

  • CNNVD Published: 2025-11-10

Description (Chinese)

SourceCodester Simple To-Do List System是SourceCodester开源的一个简单待办事项列表系统。 SourceCodester Simple To-Do List System 1.0版本存在安全漏洞,该漏洞源于Add Tasks文本输入未正确清理或编码输出,可能导致存储型跨站脚本攻击。

Description (English)

SourceCodester Simple To-Do List System is a simple to-do list system from the SourceCodester. The security loophole in version 1.0 of SourceCodester Simple To-Do List System stems from the incorrect clean-up or encoded output of the Add Tasks text, which may result in a storage-type cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

SourceCodester

Published

2025-11-10

Last Modified

2026-02-24

References

https://github.com/floccocam-cpu/CVE-Research-2025/tree/main/CVE-2025-63709 https://www.sourcecodester.com/php/17897/simple-do-list-system-using-php.html https://access.redhat.com/security/cve/cve-2025-63709

Share on: