PT-2025-39047 · Cozythemes · Cozy Blocks

0Xd4Rk5Id3

·

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-59573

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions CozyThemes Cozy Blocks versions through 2.1.29
Description A flaw exists in CozyThemes Cozy Blocks that allows for code injection due to improper neutralization of script-related HTML tags on a web page. This is a Basic Cross-Site Scripting (XSS) issue.
Recommendations Update CozyThemes Cozy Blocks to a version later than 2.1.29.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-59573

Affected Products

Cozy Blocks