Description
A vulnerability has been found in SohuTV CacheCloud up to 3.2.0. This affects the function taskQueueList of the file src/main/java/com/sohu/cache/web/controller/TaskController.java. Such manipulation leads to cross site scripting. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
References
https://github.com/sohutv/cachecloud/issues/374
https://vuldb.com/?ctiid.338589
https://vuldb.com/?submit.716313
https://github.com/sohutv/cachecloud/issues/374
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
2.4 · Low
Information
Source identifier
Vulnerability status
Analyzed
Published
2025-12-29T20:15:41.737Z
2 weeks agoLast modified
2026-01-06T21:36:46.390Z
1 week ago