Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Caido Toast Vulnerable to Reflected Cross-site Scripting
Vulnerability Description
Caido is a web security auditing toolkit. A reflected cross-site scripting (XSS) vulnerability was discovered in Caido’s toast UI component in versions prior to 0.49.0. Toast messages may reflect unsanitized user input in certain tools such as Match&Replace and Scope. This could allow an attacker to craft input that results in arbitrary script execution. Version 0.49.0 fixes the issue.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Caido 跨站脚本漏洞
Vulnerability Description
Caido是Caido开源的一个应用程序。旨在帮助安全专业人员和爱好者高效、轻松地审核 Web 应用程序。 Caido 0.49.0之前版本存在跨站脚本漏洞,该漏洞源于反射型跨站脚本,可能导致任意脚本执行。
CVSS Information
N/A
Vulnerability Type
N/A