PT-2025-40883 · Unknown · Logo Cloud

Berat Arslan

·

Published

2025-10-06

·

Updated

2025-10-06

·

CVE-2025-0607

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Logo Cloud versions prior to 2.57
Description An issue exists in Logo Cloud that allows for phishing attacks due to improper encoding or escaping of output. This can lead to cross-site scripting (XSS) where malicious code is injected into web pages.
Recommendations Update Logo Cloud to version 2.57 or later.

Fix

Improper Encoding or Escaping of Output

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-0607

Affected Products

Logo Cloud