-
CVSS Score
-A Semantic Attack on Google Gemini - Read the Latest Research
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| croogo/croogo | composer | <= 3.0.5 | 3.0.7 |
The vulnerability stems from missing output encoding in template rendering and helper functions. The commit diff shows critical fixes: