PT-2025-39602 · Sharkthemes · Smart Related Products

Nabil Irawan

·

Published

2025-09-26

·

Updated

2025-09-26

·

CVE-2025-60160

CVSS v3.1
5.9
VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L

**Name of the Vulnerable Software and Affected Versions**

sharkthemes Smart Related Products versions through 2.0.5

**Description**

The software contains a flaw related to improper input handling during web page generation, specifically a Stored Cross-site Scripting issue. This allows for the injection of malicious scripts. The issue impacts the way data is processed, potentially enabling an attacker to execute arbitrary code within the context of a user's browser. The affected component is susceptible to exploitation through crafted input.

**Recommendations**

Update to a version beyond 2.0.5.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-60160

Affected Products

Smart Related Products