Vulnerability Database

309,136

Total vulnerabilities in the database

CVE-2025-53543

Kestra is an event-driven orchestration platform. The error message in execution "Overview" tab is vulnerable to stored XSS due to improper handling of HTTP response received. This vulnerability is fixed in 0.22.0.

  • Published: Jul 7, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2025-53543
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 4.2
  • AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N