Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Joshua Dillon

#29549of 53,634
8.8Total CVSS
Vulnerabilities · 1
PT-2025-26765
8.8
2025-06-24
Unknown · Custom Rss Widget · CVE-2025-5015
Name of the Vulnerable Software and Affected Versions: AccuWeather and Custom RSS widget (affected versions not specified) Description: A cross-site scripting issue exists in the AccuWeather and Custom RSS widget, allowing an unauthenticated user to replace the RSS feed URL with a malicious one. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.