CVE-2025-30755

Publication date

2025-09-18 23:32:07

Family

oracle

State

PUBLISHED

Description

OpenGrok 1.14.1 has a reflected Cross-Site Scripting (XSS) issue when producing the cross reference page. This happens through improper handling of the revision parameter. The application reflects unsanitized user input into the HTML output.