CVE-2025-1798
EUVD-2025-1511825.03.2025, 06:15
The does not sanitise and escape some parameters when outputting them back in a page, allowing unauthenticated users the ability to perform stored Cross-Site Scripting attacks.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| italia | design_comuni_italia | 𝑥 < 1.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration