Retro is an online platform providing items of vintage collections. Prior to version 2.4.7, Retro is vulnerable to a cross-site scripting (XSS) in the input handling component. This issue has been patched in version 2.4.7.
Metrics
Affected Vendors & Products
References
History
Mon, 01 Dec 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Retro Project
Retro Project retro |
|
| Vendors & Products |
Retro Project
Retro Project retro |
Mon, 01 Dec 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 29 Nov 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Retro is an online platform providing items of vintage collections. Prior to version 2.4.7, Retro is vulnerable to a cross-site scripting (XSS) in the input handling component. This issue has been patched in version 2.4.7. | |
| Title | Retro is vulnerable to XSS vulnerability in input handling component | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-12-01T14:11:12.635Z
Reserved: 2025-11-21T01:08:02.615Z
Link: CVE-2025-66036
Updated: 2025-12-01T13:55:58.110Z
Status : Awaiting Analysis
Published: 2025-11-29T02:15:52.257
Modified: 2025-12-01T15:39:33.110
Link: CVE-2025-66036
No data.