Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 12 Dec 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Swi-prolog swish
|
|
| CPEs | cpe:2.3:a:swi-prolog:swish:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Swi-prolog swish
|
Mon, 24 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Swi-prolog
Swi-prolog swi-prolog |
|
| Vendors & Products |
Swi-prolog
Swi-prolog swi-prolog |
Thu, 20 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Thu, 20 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Stored cross site scripting (xss) vulnerability in SWISH prolog thru 2.2.0 allowing attackers to execute arbitrary code via crafted web IDE notebook. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-20T21:46:59.604Z
Reserved: 2025-10-27T00:00:00.000Z
Link: CVE-2025-63848
Updated: 2025-11-20T21:46:55.838Z
Status : Analyzed
Published: 2025-11-20T17:15:52.733
Modified: 2025-12-12T14:11:31.580
Link: CVE-2025-63848
No data.
OpenCVE Enrichment
Updated: 2025-11-24T09:10:32Z