{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-15T06:22:12.893","vulnerabilities":[{"cve":{"id":"CVE-2025-55291","sourceIdentifier":"security-advisories@github.com","published":"2025-08-18T17:15:31.243","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Shaarli is a minimalist bookmark manager and link sharing service. Prior to 0.15.0, the input string in the cloud tag page is not properly sanitized. This allows the </title> tag to be prematurely closed, leading to a reflected Cross-Site Scripting (XSS) vulnerability. This vulnerability is fixed in 0.15.0."},{"lang":"es","value":"Shaarli es un gestor de marcadores minimalista y un servicio para compartir enlaces. Antes de la versión 0.15.0, la cadena de entrada en la página de etiquetas en la nube no se depuraba correctamente. Esto permitía que la etiqueta  se cerrara prematuramente, lo que provocaba una vulnerabilidad de Cross-Site Scripting (XSS) Reflejado. Esta vulnerabilidad se corrigió en la versión 0.15.0."}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N","baseScore":7.1,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":1.8,"impactScore":5.2}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-79"},{"lang":"en","value":"CWE-80"},{"lang":"en","value":"CWE-87"}]}],"references":[{"url":"https://github.com/shaarli/Shaarli/commit/66faa61335a6e72184be64092ff1242ffa4fe5b6","source":"security-advisories@github.com"},{"url":"https://github.com/shaarli/Shaarli/security/advisories/GHSA-7w7w-pw4j-265h","source":"security-advisories@github.com"}]}}]}