Vulnerability Database
Blog
FAQ
Docs
CVE-2015-6748
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2015-6748
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2015-6748.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2015-6748
Aliases
GHSA-48rh-qgjr-xfj6
Related
DLA-2075-1
UBUNTU-CVE-2015-6748
Published
2017-09-25T17:29:00Z
Modified
2024-09-11T02:00:04Z
Severity
6.1 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Cross-site scripting (XSS) vulnerability in jsoup before 1.8.3.
References
http://www.securityfocus.com/bid/76504
http://www.openwall.com/lists/oss-security/2015/08/28/5
https://lists.debian.org/debian-lts-announce/2020/01/msg00021.html
https://github.com/jhy/jsoup/pull/582
https://bugzilla.redhat.com/show_bug.cgi?id=1258310
https://hibernate.atlassian.net/browse/HV-1012
https://issues.jboss.org/browse/WFLY-5223?_sscc=t
https://security-tracker.debian.org/tracker/CVE-2015-6748
Affected packages
Debian:11
/
jsoup
Package
Name
jsoup
Purl
pkg:deb/debian/jsoup?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.8.3-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:12
/
jsoup
Package
Name
jsoup
Purl
pkg:deb/debian/jsoup?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.8.3-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:13
/
jsoup
Package
Name
jsoup
Purl
pkg:deb/debian/jsoup?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.8.3-1
Ecosystem specific
{ "urgency": "not yet assigned" }
CVE-2015-6748 - OSV