CVE-2025-25973
20.02.2025, 18:15
A stored Cross Site Scripting vulnerability in the "related recommendations" feature in Ppress v.0.0.9 allows a remote attacker to execute arbitrary code via a crafted script to the article.title, article.category, and article.tags parameters.
| Vendor | Product | Version |
|---|---|---|
| yandaozi | ppress | 0.0.9:beta |
𝑥
= Vulnerable software versions