Vulnerability Description
yangyouwang crud v1.0.0 is vulnerable to Cross Site Scripting (XSS) via the role management function.
CVSS Score
5.4
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Yangyouwang | Crud | 1.0.0 |
Related Weaknesses (CWE)
References
- https://gist.github.com/HL4245/f2e88b7afea9ee08cc4282f38b5ea1cfThird Party Advisory
- https://github.com/HL4245/CVE/blob/main/%E7%AE%80%E7%BA%A6%E5%90%8E%E5%8F%B0%E7%Exploit
- https://github.com/HL4245/CVE/blob/main/%E7%AE%80%E7%BA%A6%E5%90%8E%E5%8F%B0%E7%Exploit
FAQ
What is CVE-2025-44091?
CVE-2025-44091 is a vulnerability with a CVSS score of 5.4 (MEDIUM). yangyouwang crud v1.0.0 is vulnerable to Cross Site Scripting (XSS) via the role management function.
How severe is CVE-2025-44091?
CVE-2025-44091 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-44091?
Check the references section above for vendor advisories and patch information. Affected products include: Yangyouwang Crud.