CVE-2025-30755
19.09.2025, 00:15
OpenGrok 1.14.1 has a reflected Cross-Site Scripting (XSS) issue when producing the cross reference page. This happens through improper handling of the revision parameter. The application reflects unsanitized user input into the HTML output.
| Vendor | Product | Version |
|---|---|---|
| oracle | opengrok | 1.14.1 |
𝑥
= Vulnerable software versions