CVE-2020-25864

MEDIUM6.1EPSS 76.7%

HashiCorp Consul Cross-site Scripting vulnerability

發布日:2022/5/24修改日:2025/4/3
也稱為:GHSA-8xmx-h8rq-h94jBIT-consul-2020-25864CGA-pgvj-869h-995wDEBIAN-CVE-2020-25864GO-2023-1851

描述

HashiCorp Consul and Consul Enterprise up to version 1.9.4 key-value (KV) raw mode was vulnerable to cross-site scripting. Fixed in 1.9.5, 1.8.10 and 1.7.14.

受影響套件(4)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.1CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

參考連結(7)