Untriaged
Permalink
CVE-2025-49249
6.1 MEDIUM
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): REQUIRED
- Scope (S): CHANGED
- Confidentiality impact (C): LOW
- Integrity impact (I): LOW
- Availability impact (A): NONE
WordPress Drone theme <= 1.40 - Reflected Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ApusTheme Drone drone allows Reflected XSS.This issue affects Drone: from n/a through <= 1.40.
References
Affected products
drone
- =<<= 1.40
Matching in nixpkgs
pkgs.drone
Continuous Integration platform built on container technology
pkgs.drone-cli
Command line client for the Drone continuous integration server
pkgs.drone-oss
Continuous Integration platform built on container technology
pkgs.drone-scp
Copy files and artifacts via SSH using a binary, docker or Drone CI
pkgs.drone-runner-ssh
Experimental Drone runner that executes a pipeline on a remote machine
-
nixos-unstable 2022-12-22
- nixpkgs-unstable 2022-12-22
- nixos-unstable-small 2022-12-22
-
nixos-25.11 2022-12-22
- nixpkgs-25.11-darwin 2022-12-22
pkgs.drone-runner-exec
Drone pipeline runner that executes builds directly on the host machine
-
nixos-unstable 2020-04-19
- nixpkgs-unstable 2020-04-19
- nixos-unstable-small 2020-04-19
-
nixos-25.11 2020-04-19
- nixpkgs-25.11-darwin 2020-04-19
pkgs.drone-runner-docker
Drone pipeline runner that executes builds inside Docker containers
pkgs.python312Packages.dronecan
Python implementation of the DroneCAN v1 protocol stack
Package maintainers
-
@vdemeester Vincent Demeester <vincent@sbr.pm>
-
@techknowlogick techknowlogick <techknowlogick@gitea.com>
-
@Mic92 Jörg Thalheim <joerg@thalheim.io>
-
@SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com>
-
@astro Astro <astro@spaceboyz.net>
-
@tanneberger Tassilo Tanneberger <revol-xut@protonmail.com>
-
@gshipunov Grigory Shipunov <blame@oxapentane.com>
-
@ambroisie Bruno BELANYI <bruno.nixpkgs@belanyi.fr>
-
@victormeriqui Victor Meriqui <victor.meriqui@ororatech.com>
-
@kip93 Leandro Reina Kiperman <leandro@kip93.net>