CVE-2025-27412
REDAXO is a PHP-based CMS. In Redaxo from 5.0.0 through 5.18.2, the rex-api-result parameter is vulnerable to Reflected cross-site scripting (XSS) on the page of AddOns. This vulnerability is fixed in 5.18.3.
Vendor
Product
CWE
Yayın Tarihi
2025-03-05 16:15:40
Güncelleme
2025-07-01 20:38:33
Source Identifier
security-advisories@github.com
KEV Date Added
-