Exploitation Summary
EIP tracks 3 public exploits for CVE-2015-6748. PoCs published by dawetmaster, andikahilmy, epicosy.
AI-analyzed exploit summary The repository contains the source code of jsoup, a Java HTML parser, but lacks any exploit code or technical analysis related to CVE-2015-6748. The README is a generic description of jsoup without vulnerability details.
Description
Cross-site scripting (XSS) vulnerability in jsoup before 1.8.3.
Exploits (3)
The repository contains the source code of jsoup, a Java HTML parser, but lacks any exploit code or technical analysis related to CVE-2015-6748. The README is a generic description of jsoup without vulnerability details.
This repository contains the vulnerable source code of jsoup library (version 1.8.3 or earlier) affected by CVE-2015-6748, which is an SSRF vulnerability due to improper URL validation. The code includes the full jsoup implementation but lacks an explicit exploit or technical analysis.
This repository contains the jsoup Java HTML parser library, which is vulnerable to CVE-2015-6748. The code includes the affected files but does not provide a direct exploit or proof-of-concept. Instead, it serves as a reference for understanding the vulnerable codebase.
References (7)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N