Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ju0X

#42491of 53,624
6.3Total CVSS
Vulnerabilities · 1
PT-2025-31523
6.3
2025-07-31
Copyparty · Copyparty · CVE-2025-54589
**Name of the Vulnerable Software and Affected Versions** Copyparty versions 1.18.6 and below **Description** Copyparty is a portable file server susceptible to a reflected Cross-Site Scripting (XSS) issue. When accessing the recent uploads page at `/?ru`, the application does not properly escape user-supplied input in the filter parameter, which is directly reflected into a `<script>` block. This allows attackers to inject malicious scripts. The issue affects both authenticated and unauthenticated users. **Recommendations** Update to version 1.18.7 or later.