Security Advisory

CVE-2025-30755

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-09-18 23:32:07
Last updated 2025-09-19 13:10:31
Assigner oracle
CVSS score 6.1
State PUBLISHED

Description

OpenGrok 1.14.1 has a reflected Cross-Site Scripting (XSS) issue when producing the cross reference page. This happens through improper handling of the revision parameter. The application reflects unsanitized user input into the HTML output.