CVE-2025-13181 – pojoin h3blog add cross site scripting

CVE ID : CVE-2025-13181

Published : Nov. 14, 2025, 8:15 p.m. | 45 minutes ago

Description : A vulnerability was determined in pojoin h3blog 1.0. The affected element is an unknown function of the file /admin/cms/material/add. Executing manipulation of the argument Name can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.

Severity: 5.1 | MEDIUM

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه