0.0 NONE
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): None (N)
- User Interaction (UI): Required (R)
- Scope (S): Unchanged (U)
- Confidentiality (C): None (N)
- Integrity (I): None (N)
- Availability (A): None (N)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): None (N)
- Modified User Interaction (MUI): Required (R)
- Modified Confidentiality (MC): None (N)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): None (N)
- Modified Availability (MA): None (N)
by @LeSuisse Activity log
- Created suggestion
- @LeSuisse dismissed (not in Nixpkgs)
Kiwi TCMS: Stored XSS via javascript: URI in extra_link field (TestPlan & TestCase)
Kiwi TCMS is an open source test management system. Prior to 16.1, TestCase.extra_link and TestPlan.extra_link accepted unsanitized user input and rendered stored values verbatim, creating an opportunity for cross-site scripting. Official Docker images and unmodified Kiwi TCMS middleware send a Content-Security-Policy header that blocks inline JavaScript, making exploitation difficult in default deployments, while customized deployments that weaken those security settings may remain vulnerable. Version 16.1 properly sanitizes both fields and resets existing database records that do not validate to null. This issue is fixed in version 16.1.
References
-
https://github.com/kiwitcms/Kiwi/security/advisories/GHSA-473p-56xx-vg67 x_refsource_CONFIRM
-
https://github.com/kiwitcms/Kiwi/releases/tag/v16.1 x_refsource_MISC
Affected products
- ==< 16.1
Matching in nixpkgs
pkgs.kiwix
Offline reader for Web content
pkgs.ikiwiki
Wiki compiler, storing pages and history in a RCS
-
nixos-unstable 3.20200202.3
- nixpkgs-unstable 3.20200202.3
- nixos-unstable-small 3.20200202.3
-
nixos-26.05 3.20200202.3
- nixos-26.05-small 3.20200202.3
- nixpkgs-26.05-darwin 3.20200202.3
pkgs.libkiwix
Common code base for all Kiwix ports
pkgs.kiwix-apple
Offline reader for Web content
pkgs.kiwix-tools
Command line Kiwix tools
pkgs.ikiwiki-full
Wiki compiler, storing pages and history in a RCS
-
nixos-unstable 3.20200202.3
- nixpkgs-unstable 3.20200202.3
- nixos-unstable-small 3.20200202.3
-
nixos-26.05 3.20200202.3
- nixos-26.05-small 3.20200202.3
- nixpkgs-26.05-darwin 3.20200202.3
pkgs.python313Packages.kiwisolver
Implementation of the Cassowary constraint solver
pkgs.python314Packages.kiwisolver
Implementation of the Cassowary constraint solver
pkgs.python313Packages.kiwiki-client
Module to interact with the KIWI.KI API
pkgs.python314Packages.kiwiki-client
Module to interact with the KIWI.KI API
pkgs.gnomeExtensions.kiwi-is-not-apple
Kiwi is free open source project that brings macOS-inspired features for GNOME.
pkgs.python313Packages.electrickiwi-api
Python library for interfacing with the Electric Kiwi power company API
Package maintainers
-
@honnip Jung seungwoo <me@honnip.page>
-
@MysteryBlokHed Adam Thompson-Sharpe <nix@adamts.me>
-
@uninsane Colin Sane <colin@uninsane.org>
-
@JamieMagee Jamie Magee <jamie.magee@gmail.com>
-
@fabaff Fabian Affolter <mail@fabian-affolter.ch>