CVE-2025-4779 | lunary-ai lunary up to 1.9.23 dangerouslySetInnerHTML citations cross site scripting (EUVD-2025-20219)
A vulnerability classified as problematic has been found in lunary-ai lunary up to 1.9.23. This vulnerability affects the function dangerouslySetInnerHTML. Performing manipulation of the argument citations results in cross site scripting.
This vulnerability was named CVE-2025-4779. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.