Description
Cross Site Scripting (XSS) vulnerability in hexo-theme-anzhiyu v1.6.12, allows remote attackers to execute arbitrary code via the algolia search function.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-82jf-8f24-xq9m | hexo-theme-anzhiyu Cross-site Scripting vulnerability |
References
| Link | Providers |
|---|---|
| https://github.com/anzhiyu-c/hexo-theme-anzhiyu/issues/200 |
|
History
Sat, 29 Mar 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Jan 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Anzhiyu-c
Anzhiyu-c hexo-theme-anzhiyu |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:anzhiyu-c:hexo-theme-anzhiyu:1.6.12:*:*:*:*:*:*:* | |
| Vendors & Products |
Anzhiyu-c
Anzhiyu-c hexo-theme-anzhiyu |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-28T23:29:28.942Z
Reserved: 2024-02-12T00:00:00.000Z
Link: CVE-2024-25865
Updated: 2024-08-01T23:52:06.057Z
Status : Modified
Published: 2024-03-02T22:15:50.293
Modified: 2025-03-29T00:15:19.200
Link: CVE-2024-25865
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA