CVE-2025-57425
EUVD-2025-2590526.08.2025, 17:15
A Stored Cross-Site Scripting (XSS) vulnerability in SourceCodester FAQ Management System 1.0 allows an authenticated attacker to inject malicious JavaScript into the 'question' and 'answer' fields via the update-faq.php endpoint.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| remyandrade | faq_management_system | 1.0 |
𝑥
= Vulnerable software versions