CVE-2025-13182
14.11.2025, 21:15
A vulnerability was identified in pojoin h3blog 1.0. The impacted element is an unknown function of the file /admin/cms/category/addtitle. The manipulation of the argument Title leads to cross site scripting. The attack can be initiated remotely. The exploit is publicly available and might be used.
| Vendor | Product | Version |
|---|---|---|
| h3blog | h3blog | 1.0.0 |
𝑥
= Vulnerable software versions