CVE-2025-24810

Cross-site scripting vulnerability exists in Simple Image Sizes 3.2.3 and earlier. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the product with the administrative privilege and accessing the settings screen.
CVSS

No CVSS.

Configurations

No configuration.

History

28 Jan 2025, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-28 05:15

Updated : 2025-01-28 05:15


NVD link : CVE-2025-24810

Mitre link : CVE-2025-24810


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')