CVE Database
/

CVE-2025-11146

Back to search

CVE-2025-11146

Published: Sep 29, 2025

Modified: Sep 29, 2025

PUBLISHED

Description

Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows an attacker to execute malicious scripts (XSS) in the web management application. The vulnerability is caused by improper handling of GET inputs included in the URL in “/acng-report.html”.

VendorProductVersions

Apt-Cacher-NG

Apt-Cacher-NG

affected
3.2.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now