CVE-2025-13181 – pojoin h3blog add cross site scripting
CVE ID : CVE-2025-13181
Published : Nov. 14, 2025, 8:15 p.m. | 45 minutes ago
Description : A vulnerability was determined in pojoin h3blog 1.0. The affected element is an unknown function of the file /admin/cms/material/add. Executing manipulation of the argument Name can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Severity: 5.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more…