No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 12 May 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Th30d4y w4nn4d13\/ip
|
|
| CPEs | cpe:2.3:a:th30d4y:w4nn4d13\/ip:*:*:*:*:*:node.js:*:* | |
| Vendors & Products |
Th30d4y w4nn4d13\/ip
|
Sun, 10 May 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Th30d4y
Th30d4y ip |
|
| Vendors & Products |
Th30d4y
Th30d4y ip |
Fri, 08 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 08 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In th30d4y/IP from version 1.0.1 to before version 2.0.1, a DOM-Based Cross-Site Scripting (XSS) vulnerability was identified in an IP Reputation Checker application. Unsanitized user input was directly rendered in the browser, allowing attackers to execute arbitrary JavaScript. This issue has been patched in version 2.0.1. | |
| Title | th30d4y/IP: DOM-Based Cross-Site Scripting (XSS) Vulnerability | |
| Weaknesses | CWE-79 CWE-80 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-05-08T16:41:23.602Z
Reserved: 2026-04-21T14:15:21.958Z
Link: CVE-2026-41575
Updated: 2026-05-08T16:36:38.268Z
Status : Analyzed
Published: 2026-05-08T15:16:40.740
Modified: 2026-05-12T21:11:42.060
Link: CVE-2026-41575
No data.
OpenCVE Enrichment
Updated: 2026-05-10T21:25:17Z