HackTips.

页面数据均来自于CVE官方,仅调用Api进行查询

1@1042.net

CVE编号CVE-2025-25908
发布日期2025-03-10T00:00:00.000Z
更新日期2025-03-11T02:48:57.131Z
状态PUBLISHED
受影响的供应商n/a
受影响的产品n/a
描述A stored cross-site scripting (XSS) vulnerability in tianti v2.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the coverImageURL parameter at /article/ajax/save.

参考链接:

Image Additional Image