CVE-2025-63073
EUVD-2025-20195609.12.2025, 16:18
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dream-Theme The7 dt-the7 allows DOM-Based XSS.This issue affects The7: from n/a through < 12.9.0.Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| dream-theme | the7 | 𝑥 ≤ 12.9.0 | CNA |