PT-2025-52748 · Webcodingplace · Responsive Posts Carousel Pro

Phat Rio

·

Published

2025-12-23

·

Updated

2025-12-23

·

CVE-2025-68548

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Responsive Posts Carousel Pro versions through 15.2
Description An issue exists in WebCodingPlace Responsive Posts Carousel Pro that allows for Stored Cross-site Scripting (XSS). This occurs due to improper neutralization of input during web page generation. The issue allows an attacker to inject malicious scripts into web pages viewed by other users.
Recommendations Update Responsive Posts Carousel Pro to a version later than 15.2.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-68548

Affected Products

Responsive Posts Carousel Pro