OpenGrok 1.14.1 has a reflected Cross-Site Scripting (XSS) issue when producing the cross reference page. This happens through improper handling of the revision parameter. The application reflects unsanitized user input into the HTML output.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 18 Sep 2025 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | OpenGrok 1.14.1 has a reflected Cross-Site Scripting (XSS) issue when producing the cross reference page. This happens through improper handling of the revision parameter. The application reflects unsanitized user input into the HTML output. | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2025-09-18T23:32:07.807Z
Reserved: 2025-03-26T05:52:18.814Z
Link: CVE-2025-30755

No data.

Status : Received
Published: 2025-09-19T00:15:34.460
Modified: 2025-09-19T00:15:34.460
Link: CVE-2025-30755

No data.

No data.