Bug 2514977 (CVE-2026-73422)
| Summary: | CVE-2026-73422 astro: Astro: Arbitrary code execution via unescaped View Transition animation properties | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | Keywords: | Security |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in Astro. A remote attacker can exploit a reflected Cross-Site Scripting (XSS) vulnerability due to unescaped View Transition animation properties in the server-side CSS generator. By manipulating an animation value, such as 'duration', an attacker can inject arbitrary HTML or JavaScript. This allows for the execution of arbitrary JavaScript in the affected application's origin, potentially leading to access to sensitive page data and authenticated actions available to the victim.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2523529 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2026-08-12 20:41:24 UTC
|