PT-2025-53812 · Unknown · Kemal Yazici Product Puller

João Pedro S Alcântara

·

Published

2025-12-29

·

Updated

2026-01-04

·

CVE-2025-23550

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Kemal YAZICI Product Puller versions through 1.5.1
Description The software contains a flaw related to improper input handling during web page generation, which allows for Reflected Cross-Site Scripting (XSS). This means that malicious code can be injected into web pages viewed by users. The affected product is Kemal YAZICI Product Puller.
Recommendations Update Kemal YAZICI Product Puller to a version later than 1.5.1.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-23550

Affected Products

Kemal Yazici Product Puller