Reflected Cross-site scripting (XSS) vulnerability in Apt-Cacher-NG
CVE-2025-11146
5.1MEDIUM
What is CVE-2025-11146?
Reflected Cross-site scripting (XSS) in Apt-Cacher-NG v3.2.1. The vulnerability allows an attacker to execute malicious scripts (XSS) in the web management application. The vulnerability is caused by improper handling of GET inputs included in the URL in “/acng-report.html”.
Affected Version(s)
Apt-Cacher-NG 3.2.1