CVE-2025-11146
EUVD-2025-3156729.09.2025, 10:15
Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows an attacker to execute malicious scripts (XSS) in the web management application. The vulnerability is caused by improper handling of GET inputs included in the URL in “/acng-report.html”.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apt-cacher-ng_project | apt-cacher-ng | 3.2-1 |
𝑥
= Vulnerable software versions