VYPR
Unrated severityNVD Advisory· Published Sep 29, 2025· Updated Sep 29, 2025

Reflected Cross-site scripting (XSS) vulnerability in Apt-Cacher-NG

CVE-2025-11146

Description

Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows an attacker to execute malicious scripts (XSS) in the web management application. The vulnerability is caused by improper handling of GET inputs included in the URL in “/acng-report.html”.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.