Back

MEDIUM

An issue in croogo v.3.0.2 allows an attacker to perform Host header injection via the feed.rss component

Published Apr 18, 2025

Description

An issue in croogo v.3.0.2 allows an attacker to perform Host header injection via the feed.rss component.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (2)

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 18, 2025
Updated Apr 22, 2025
Reserved Mar 19, 2024
CISA Vulnrichment
Updated Apr 22, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner mitre
Published Apr 18, 2025
Updated Apr 22, 2025
Exploited since n/a
EUVD-2024-26645 GHSA-847X-X4JG-6GF4