Security Advisory

CVE-2025-25973

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-02-20 00:00:00
Last updated 2025-02-20 19:44:42
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A stored Cross Site Scripting vulnerability in the "related recommendations" feature in Ppress v.0.0.9 allows a remote attacker to execute arbitrary code via a crafted script to the article.title, article.category, and article.tags parameters.