← Back

CVE-2026-41575

nvd nist
Published: May 8, 2026Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: security-advisories@github.com (Secondary)

Description

In th30d4y/IP from version 1.0.1 to before version 2.0.1, a DOM-Based Cross-Site Scripting (XSS) vulnerability was identified in an IP Reputation Checker application. Unsanitized user input was directly rendered in the browser, allowing attackers to execute arbitrary JavaScript. This issue has been patched in version 2.0.1.

Affected (1)

Products: Th30d4y: W4nn4d13/ip
1 product
W4nn4d13/ip
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 1.0.1 to 2.0.1

References (1)

Source: security-advisories@github.com
Vendor Advisory

Timeline

No history available yet.