PT-2025-5632 · Packagist · Silverstripe/Framework

Published

2025-01-23

·

Updated

2025-01-23

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: No specific software or versions mentioned.
Description: The issue occurs when a website is set to the "dev" environment mode. In this mode, if a URL containing an XSS payload is provided, the payload will be executed in the resulting error message.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

GHSA-74J9-XHQR-6QV3

Affected Products

Silverstripe/Framework