Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-9022 | Drupal RapiDoc OAS Field Formatter Cross-Site Scripting (XSS) vulnerability |
Github GHSA |
GHSA-86h4-w859-3hhv | Drupal RapiDoc OAS Field Formatter Cross-Site Scripting (XSS) vulnerability |
| Link | Providers |
|---|---|
| https://www.drupal.org/sa-contrib-2025-025 |
|
Tue, 02 Sep 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Chapterthree
Chapterthree rapidoc Oas Field Formatter |
|
| CPEs | cpe:2.3:a:chapterthree:rapidoc_oas_field_formatter:*:*:*:*:*:drupal:*:* | |
| Vendors & Products |
Chapterthree
Chapterthree rapidoc Oas Field Formatter |
Tue, 29 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 31 Mar 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal RapiDoc OAS Field Formatter allows Cross-Site Scripting (XSS).This issue affects RapiDoc OAS Field Formatter: from 0.0.0 before 1.0.1. | |
| Title | RapiDoc OAS Field Formatter - Moderately critical - Cross site scripting - SA-CONTRIB-2025-025 | |
| Weaknesses | CWE-79 | |
| References |
|
Status: PUBLISHED
Assigner: drupal
Published:
Updated: 2025-04-29T15:17:13.268Z
Reserved: 2025-03-31T21:30:25.065Z
Link: CVE-2025-31696
Updated: 2025-04-29T15:16:58.069Z
Status : Analyzed
Published: 2025-03-31T22:15:22.320
Modified: 2025-09-02T18:34:46.777
Link: CVE-2025-31696
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA