Astro 5.15.8 contains a reflected XSS caused by improper handling of server islands feature, letting remote attackers execute scripts, exploit requires use of server islands in the application.
id: CVE-2025-64764
info:
name: Astro - Reflected XSS via server islands feature
author: Dhiyane
...