CVE编号 | CVE-2025-25908 |
---|---|
发布日期 | 2025-03-10T00:00:00.000Z |
更新日期 | 2025-03-11T02:48:57.131Z |
状态 | PUBLISHED |
受影响的供应商 | n/a |
受影响的产品 | n/a |
描述 | A stored cross-site scripting (XSS) vulnerability in tianti v2.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the coverImageURL parameter at /article/ajax/save. |
参考链接: