VulnerAlert



WEBSITE
16-07-2025 19:08

CVE-2025-53904 Vulnerabilidad documentada

1.3 LOW
Tags
#site
#cross
#web
#cross-site
#admin
#website
#develop
#cross-site scripting
#vulnerable
#scripting
#patch
Descripción
The Scratch Channel is a news website that under development as of time this writing. The file `/api/admin.js` contains code could make the vulnerable to cross-site scripting. No known patches exist publication.
https://github.com/The-Scratch-Channel/the-scratch-channel.github.io/blob/main/api/admin.js#L18
https://github.com/The-Scratch-Channel/the-scratch-channel.github.io/security/advisories/GHSA-hgh4-pj74-f5rr
Referencia
Link externo
Ver detalles

Fuente
https://nvd.nist.gov/vuln/detail/CVE-2025-53904
Resultados similares
Coincidentes en almenos en 50% de los tags
16-07-2025 CVE-2025-53926
Emlog is an open source website building system. A cross-site scripting (XSS) vulnerability in ...
Ver información
16-07-2025 CVE-2025-53924
Emlog is an open source website building system. A cross-site scripting (XSS) vulnerability in ...
Ver información
Icons made by Freepik from www.flaticon.com
Este Proyecto fue cofinanciado por el Consejo Nacional de Ciencia y Tecnología (CONACYT) a través del PROINNOVA 2021/2023
Proyecto realizado por