Beveiligingsadvies

CVE-2025-25973

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-02-20 00:00:00
Laatst bijgewerkt 2025-02-20 19:44:42
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A stored Cross Site Scripting vulnerability in the "related recommendations" feature in Ppress v.0.0.9 allows a remote attacker to execute arbitrary code via a crafted script to the article.title, article.category, and article.tags parameters.