Impact
A reflected cross‑site scripting vulnerability exists in the mcp query parameter of Next AI Draw.io. Malicious content is injected into web pages without escaping, allowing attackers to execute arbitrary JavaScript in the context of the localhost origin. This can lead to exfiltration of diagram sessions and API data, potentially compromising user data confidentiality and integrity.
Affected Systems
The vulnerability affects the DayuanJiang:next‑ai‑draw‑io product, versions 0.2.1 through 0.4.16.
Risk and Exploitability
The CVSS base score of 5.1 indicates a medium severity threat. EPSS data is unavailable, so the likelihood of exploitation cannot be precisely quantified, and the vulnerability is not listed in the CISA KEV catalog. Attackers can craft malicious URLs containing arbitrary JavaScript payloads and lure users to visit them from the same localhost origin, thereby executing code in the victim’s browser session.
OpenCVE Enrichment