CVE-2025-54597
LinuxServer.io Heimdall before 2.7.3 allows XSS via the q parameter.
LinuxServer.io Heimdall before 2.7.3 allows XSS via the q parameter.
HIGH · CVSS 7.2
EPSS 0.01126
Act now
- Public exploit or PoC is available
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0