PT-2025-54327 · Unknown · Wayne Allen Postie

Published

2025-12-31

·

Updated

2026-01-01

·

CVE-2025-63020

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Wayne Allen Postie versions through 1.9.73
Description The software contains a flaw related to improper input handling during web page generation, specifically a Stored Cross-site Scripting issue. This allows for the injection of malicious scripts. The affected component is susceptible to exploitation through web pages. The vulnerability allows for Stored XSS attacks.
Recommendations Update Wayne Allen Postie to a version later than 1.9.73.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-63020

Affected Products

Wayne Allen Postie