Impact
This flaw allows an attacker to inject arbitrary script code into the HTML generated by the renderHistory function of the ImageStudio.js component. The impact is that a victim who views a crafted history entry will execute the injected script in their browser. Based on typical XSS behavior, this could lead to session hijacking, page defacement, or redirects, but those outcomes are inferred from general XSS characteristics rather than stated in the description. The vulnerability is categorized as a classic reflected XSS (CWE‑79) that can also be leveraged as a component of a broader code‑execution vector (CWE‑94).
Affected Systems
The affected product is Anil-matcha Open-Generative-AI, specifically versions up to 1.0.11 and 2.0.0. The renderHistory function in Studio Components is the vulnerable code path. The project’s GitHub repository.
Risk and Exploitability
The CVSS score of 5.1 indicates a medium severity. The EPSS score of <1% shows a very low probability of exploitation, and the vulnerability is not listed in CISA KEV. The likely attack vector is remote: an attacker can construct a URL or payload that triggers the renderHistory function when a user navigates to it. If the vulnerable function is exposed in a public or shared environment, the risk to end‑users is elevated, though defenses such as disabling the Studio Components or restricting access mitigate the threat.
OpenCVE Enrichment