CNNVD-202512-1949 Information

CNNVD ID

CNNVD-202512-1949

CVE-2025-65754

  • CNNVD Published: 2025-12-10

Description (Chinese)

algernon是Alexander F. Rødseth个人开发者的一个 Web 服务器。 algernon 1.17.4版本存在安全漏洞,该漏洞源于文件名中存在跨站脚本,可能导致执行任意代码。

Description (English)

Algernon is a Web server for Alexander F. Rødseth’s personal developer. There is a security loophole in version 1.17.4 of algeron, which stems from the existence of a cross-site script in the file name, which may result in the implementation of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-12-10

Last Modified

2026-02-24

References

https://gist.github.com/Bnyt7/0faa90ff93c5d98093a0e29a1eb34d81 https://github.com/Bnyt7/CVE-2025-65754 https://github.com/xyproto/algernon https://access.redhat.com/security/cve/cve-2025-65754

Patch

https://algernon.roboticoverlords.org/

Share on: