CVE-2025-24575
EUVD-2025-378324.01.2025, 18:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HelloAsso HelloAsso helloasso allows Stored XSS.This issue affects HelloAsso: from n/a through <= 1.1.11.Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| helloasso | helloasso | 𝑥 ≤ 1.1.11 | CNA |